CVE-2016-6484 | NetMRI up to 7.1.0 login.tdf _formstack/skipjackPassword/skipjackUsername Reflected crlf injection (ID 138615 / BID-92794)
A vulnerability was found in NetMRI up to 7.1.0. It has been classified as problematic. Affected by this issue is some unknown functionality of the file config/userAdmin/login.tdf. This manipulation of the argument _formstack/skipjackPassword/skipjackUsername with the input %3C/script%3E%3Cscript%3Ealert%281%29%3C/script%3E causes crlf injection (Reflected).
This vulnerability is handled as CVE-2016-6484. The attack can be initiated remotely. Additionally, an exploit exists.
Upgrading the affected component is recommended.