Cross-site scripting (XSS) vulnerability in Ensim webplliance allows remote attackers to inject arbitrary web script or HTML via the Login (OCW_login_username) field.
| Software | From | Fixed in |
|---|---|---|
| ensim / webppliance | 3.0 | 3.0.x |
| ensim / webppliance | 3.1.1 | 3.1.1.x |
| ensim / webppliance | 3.1 | 3.1.x |