← back
CVE-2016-9500CWE-80

The Accellion FTP server prior to version FTA_9_12_220 is vulnerable to informaiton exposure

3Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackepss 5.4%
exploitation probability
5.4%top 8% of all CVEs
observed exploitation
nono source reports it
Accellion FTP server prior to version FTA_9_12_220 uses the Accusoft Prizm Content flash component, which contains multiple parameters (customTabCategoryName, customButton1Image) that are vulnerable to cross-site scripting.
Affected products
Accellion · FTP Server