VYPR
High severity7.1NVD Advisory· Published Sep 24, 2021· Updated Jun 17, 2026

CVE-2016-6555

CVE-2016-6555

Description

OpenNMS version 18.0.1 and prior are vulnerable to a stored XSS issue due to insufficient filtering of SNMP trap supplied data. By creating a malicious SNMP trap, an attacker can store an XSS payload which will trigger when a user of the web UI views the events list page. This issue was fixed in version 18.0.2, released on September 20, 2016.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Opennms/Opennms3 versions
    cpe:2.3:a:opennms:opennms:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:opennms:opennms:*:*:*:*:*:*:*:*range: <18.0.2-1
    • (no CPE)range: <=18.0.1
    • (no CPE)range: 18.0.1

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.