CVE-2015-7676: Ipswitch MOVEit Dmz
Medium severity, CVSS 5.4. EPSS: 1.8% chance of exploitation in the next 30 days.
Ipswitch MOVEit File Transfer (formerly DMZ) 8.1 and earlier, when configured to support file view on download, allows remote authenticated users to conduct cross-site scripting (XSS) attacks by uploading HTML files.
Affected products
- Ipswitch MOVEit Dmz: up to and including 8.1
Published 2016-04-15. Last modified 2026-06-17.