Lucene search

K
cve[email protected]CVE-2008-5093
HistoryNov 14, 2008 - 7:20 p.m.

CVE-2008-5093

2008-11-1419:20:54
CWE-79
web.nvd.nist.gov
22
xss
vulnerability
novell
edirectory
httpstk
nvd

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

5.4 Medium

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

59.0%

Cross-site scripting (XSS) vulnerability in the HTTP Protocol Stack (HTTPSTK) in Novell eDirectory before 8.8 SP3 allows remote attackers to inject arbitrary web script or HTML via unknown vectors.

Affected configurations

NVD
Node
novelledirectory
OR
novelledirectoryRange8.8sp2windows
OR
novelledirectoryMatch8.0
OR
novelledirectoryMatch8.5.12a
OR
novelledirectoryMatch8.5.27
OR
novelledirectoryMatch8.6.2
OR
novelledirectoryMatch8.7
OR
novelledirectoryMatch8.7.1
OR
novelledirectoryMatch8.7.1sp1
OR
novelledirectoryMatch8.7.3
OR
novelledirectoryMatch8.7.3sp1windows
OR
novelledirectoryMatch8.7.3sp2windows
OR
novelledirectoryMatch8.7.3sp3windows
OR
novelledirectoryMatch8.7.3sp4windows
OR
novelledirectoryMatch8.7.3sp5windows
OR
novelledirectoryMatch8.7.3sp6windows
OR
novelledirectoryMatch8.7.3sp7windows
OR
novelledirectoryMatch8.7.3sp8windows
OR
novelledirectoryMatch8.7.3sp9windows
OR
novelledirectoryMatch8.7.3.8
OR
novelledirectoryMatch8.7.3.8_presp9
OR
novelledirectoryMatch8.7.3.9
OR
novelledirectoryMatch8.7.3.9linux
OR
novelledirectoryMatch8.7.3.9solaris
OR
novelledirectoryMatch8.7.3.9windows_2000
OR
novelledirectoryMatch8.7.3.9windows_2003
OR
novelledirectoryMatch8.7.3.10
OR
novelledirectoryMatch8.8
OR
novelledirectoryMatch8.8linux
OR
novelledirectoryMatch8.8solaris
OR
novelledirectoryMatch8.8windows_2000
OR
novelledirectoryMatch8.8windows_2003
OR
novelledirectoryMatch8.8.1
OR
novelledirectoryMatch8.8.1linux
OR
novelledirectoryMatch8.8.1solaris
OR
novelledirectoryMatch8.8.1windows_2000
OR
novelledirectoryMatch8.8.1windows_2003
OR
novelledirectoryMatch8.8.2
OR
novelledirectoryMatch8.8.2linux
OR
novelledirectoryMatch8.8.2solaris
OR
novelledirectoryMatch8.8.2windows_2000
OR
novelledirectoryMatch8.8.2windows_2003

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

5.4 Medium

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

59.0%

Related for CVE-2008-5093