Lucene search

K
cveMitreCVE-2007-3830
HistoryJul 17, 2007 - 9:30 p.m.

CVE-2007-3830

2007-07-1721:30:00
mitre
web.nvd.nist.gov
31
xss
vulnerability
alert.php
iss proventia network ips
gx5108
gx5008
remote attackers
web script
html
nvd

CVSS2

3.5

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:S/C:N/I:P/A:N

AI Score

5.7

Confidence

High

EPSS

0.013

Percentile

86.0%

Cross-site scripting (XSS) vulnerability in alert.php in ISS Proventia Network IPS GX5108 1.3 and GX5008 1.5 allows remote attackers to inject arbitrary web script or HTML via the reminder parameter.

Affected configurations

Nvd
Node
ibmproventia_network_ips_gx5008Match1.5
OR
ibmproventia_network_ips_gx5108Match1.3
VendorProductVersionCPE
ibmproventia_network_ips_gx50081.5cpe:2.3:h:ibm:proventia_network_ips_gx5008:1.5:*:*:*:*:*:*:*
ibmproventia_network_ips_gx51081.3cpe:2.3:h:ibm:proventia_network_ips_gx5108:1.3:*:*:*:*:*:*:*

CVSS2

3.5

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:S/C:N/I:P/A:N

AI Score

5.7

Confidence

High

EPSS

0.013

Percentile

86.0%

Related for CVE-2007-3830