Loading
Ipswitch MOVEit File Transfer (formerly DMZ) 8.1 and earlier, when configured to support file view on download, allows remote authenticated users to conduct cross-site scripting (XSS) attacks by uploading HTML files.
Use CWE-79, Ipswitch vendor hub and Moveit Dmz product page to widen CVE-2015-7676 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2017-6195, CVE-2015-7675 and CVE-2015-7680 for nearby disclosures in the same product family.