{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-04-18T17:57:09.461","vulnerabilities":[{"cve":{"id":"CVE-2018-1186","sourceIdentifier":"security_alert@emc.com","published":"2018-03-26T18:29:00.910","lastModified":"2024-11-21T03:59:21.463","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Dell EMC Isilon versions between 8.1.0.0 - 8.1.0.1, 8.0.1.0 - 8.0.1.2, and 8.0.0.0 - 8.0.0.6, versions 7.2.1.x, and version 7.1.1.11 is affected by a cross-site scripting vulnerability in the Cluster description of the OneFS web administration interface. A malicious administrator may potentially inject arbitrary HTML or JavaScript code in the user's browser session in the context of the OneFS website."},{"lang":"es","value":"Dell EMC Isilon en versiones entre la 8.1.0.0 y la 8.1.0.1, la 8.0.1.0 y la 8.0.1.2 y entre la 8.0.0.0 y la 8.0.0.6; versiones 7.2.1.x y versión 7.1.1.11 contiene una vulnerabilidad de Cross-Site Scripting (XSS) en la descripción del clúster de la interfaz de administración web OneFS. Un administrador malicioso podría inyectar código HTML o JavaScript arbitrario en la sesión del navegador del usuario, en el contexto del sitio web OneFS."}],"metrics":{"cvssMetricV30":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N","baseScore":4.8,"baseSeverity":"MEDIUM","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"HIGH","userInteraction":"REQUIRED","scope":"CHANGED","confidentialityImpact":"LOW","integrityImpact":"LOW","availabilityImpact":"NONE"},"exploitabilityScore":1.7,"impactScore":2.7}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:S/C:N/I:P/A:N","baseScore":3.5,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"SINGLE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":6.8,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-79"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:dell:emc_isilon:*:*:*:*:*:*:*:*","versionStartIncluding":"7.2.1.0","versionEndIncluding":"7.2.1.6","matchCriteriaId":"80A22476-2261-41FD-AD38-F684068C9B79"},{"vulnerable":true,"criteria":"cpe:2.3:a:dell:emc_isilon:*:*:*:*:*:*:*:*","versionStartIncluding":"8.0.0.0","versionEndIncluding":"8.0.0.6","matchCriteriaId":"091E9868-D392-4C38-90FA-54AC8D9E4319"},{"vulnerable":true,"criteria":"cpe:2.3:a:dell:emc_isilon:*:*:*:*:*:*:*:*","versionStartIncluding":"8.0.1.0","versionEndIncluding":"8.0.1.2","matchCriteriaId":"90EE5598-0C42-4292-8C8B-D00F81F9C46C"},{"vulnerable":true,"criteria":"cpe:2.3:a:dell:emc_isilon:*:*:*:*:*:*:*:*","versionStartIncluding":"8.1.0.0","versionEndIncluding":"8.1.0.1","matchCriteriaId":"909C1B60-2129-467B-A1F0-5BC03DEEA896"},{"vulnerable":true,"criteria":"cpe:2.3:a:dell:emc_isilon:7.1.1.11:*:*:*:*:*:*:*","matchCriteriaId":"F91DCEDA-03B1-43C7-89B9-175650A70C68"}]}]}],"references":[{"url":"http://seclists.org/fulldisclosure/2018/Mar/50","source":"security_alert@emc.com","tags":["Mailing List","Third Party Advisory"]},{"url":"http://www.securityfocus.com/bid/103033","source":"security_alert@emc.com","tags":["Third Party Advisory","VDB Entry"]},{"url":"https://www.coresecurity.com/advisories/dell-emc-isilon-onefs-multiple-vulnerabilities","source":"security_alert@emc.com","tags":["Exploit","Third Party Advisory"]},{"url":"https://www.exploit-db.com/exploits/44039/","source":"security_alert@emc.com","tags":["Exploit","Third Party Advisory","VDB Entry"]},{"url":"http://seclists.org/fulldisclosure/2018/Mar/50","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List","Third Party Advisory"]},{"url":"http://www.securityfocus.com/bid/103033","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]},{"url":"https://www.coresecurity.com/advisories/dell-emc-isilon-onefs-multiple-vulnerabilities","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Third Party Advisory"]},{"url":"https://www.exploit-db.com/exploits/44039/","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Third Party Advisory","VDB Entry"]}]}}]}