Medium severity6.1NVD Advisory· Published May 7, 2016· Updated May 6, 2026
CVE-2016-2350
CVE-2016-2350
Description
Multiple cross-site scripting (XSS) vulnerabilities on the Accellion File Transfer Appliance (FTA) before FTA_9_12_40 allow remote attackers to inject arbitrary web script or HTML via unspecified input to (1) getimageajax.php, (2) move_partition_frame.html, or (3) wmInfo.html.
Affected products
1- cpe:2.3:a:accellion:file_transfer_appliance:*:*:*:*:*:*:*:*Range: <=9_11_210
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- devco.re/blog/2016/04/21/how-I-hacked-facebook-and-found-someones-backdoor-script-eng-ver/nvdExploit
- www.kb.cert.org/vuls/id/505560nvdThird Party AdvisoryUS Government Resource
News mentions
0No linked articles in our index yet.