It has been reported that Verity Information Server does not sufficiently filter user-supplied search parameters on the Verity Information Server 'Search' page. It may be possible for a remote attacker to create a malicious link containing script code that will be executed in the browser of a legitimate user. All code will be executed within the context of the website running Verity Information Server.
It has been reported that Verity Information Server does not sufficiently filter user-supplied search parameters on the Verity Information Server 'Search' page. It may be possible for a remote attacker to create a malicious link containing script code that will be executed in the browser of a legitimate user. All code will be executed within the context of the website running Verity Information Server.