Medium severity4.8NVD Advisory· Published Mar 10, 2026· Updated May 7, 2026
CVE-2026-3862
CVE-2026-3862
Description
Cross-site Scripting (XSS) allows an attacker to submit specially crafted data to the application which is returned unaltered in the resulting web page.
Affected products
3cpe:2.3:a:broadcom:symantec_siteminder:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:broadcom:symantec_siteminder:*:*:*:*:*:*:*:*range: >=12.8,<=12.8.08
- cpe:2.3:a:broadcom:symantec_siteminder:12.9:*:*:*:*:*:*:*
- (no CPE)range: 12.9
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.