Lucene search

K
cveHpCVE-2012-3279
HistoryFeb 06, 2013 - 12:05 p.m.

CVE-2012-3279

2013-02-0612:05:42
CWE-79
hp
web.nvd.nist.gov
35
cve-2012-3279
cross-site scripting
xss
hp network node manager i
nnmi
remote attack
html injection

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.8

Confidence

High

EPSS

0.001

Percentile

47.4%

Multiple cross-site scripting (XSS) vulnerabilities in HP Network Node Manager i (NNMi) 8.x, 9.0x, 9.1x, and 9.20 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Affected configurations

Nvd
Node
hpnetwork_node_manager_iMatch8.0
OR
hpnetwork_node_manager_iMatch8.10
OR
hpnetwork_node_manager_iMatch8.11
OR
hpnetwork_node_manager_iMatch8.12
OR
hpnetwork_node_manager_iMatch8.13
OR
hpnetwork_node_manager_iMatch9.0
OR
hpnetwork_node_manager_iMatch9.01
OR
hpnetwork_node_manager_iMatch9.02
OR
hpnetwork_node_manager_iMatch9.03
OR
hpnetwork_node_manager_iMatch9.10
OR
hpnetwork_node_manager_iMatch9.20
VendorProductVersionCPE
hpnetwork_node_manager_i8.0cpe:2.3:a:hp:network_node_manager_i:8.0:*:*:*:*:*:*:*
hpnetwork_node_manager_i8.10cpe:2.3:a:hp:network_node_manager_i:8.10:*:*:*:*:*:*:*
hpnetwork_node_manager_i8.11cpe:2.3:a:hp:network_node_manager_i:8.11:*:*:*:*:*:*:*
hpnetwork_node_manager_i8.12cpe:2.3:a:hp:network_node_manager_i:8.12:*:*:*:*:*:*:*
hpnetwork_node_manager_i8.13cpe:2.3:a:hp:network_node_manager_i:8.13:*:*:*:*:*:*:*
hpnetwork_node_manager_i9.0cpe:2.3:a:hp:network_node_manager_i:9.0:*:*:*:*:*:*:*
hpnetwork_node_manager_i9.01cpe:2.3:a:hp:network_node_manager_i:9.01:*:*:*:*:*:*:*
hpnetwork_node_manager_i9.02cpe:2.3:a:hp:network_node_manager_i:9.02:*:*:*:*:*:*:*
hpnetwork_node_manager_i9.03cpe:2.3:a:hp:network_node_manager_i:9.03:*:*:*:*:*:*:*
hpnetwork_node_manager_i9.10cpe:2.3:a:hp:network_node_manager_i:9.10:*:*:*:*:*:*:*
Rows per page:
1-10 of 111

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.8

Confidence

High

EPSS

0.001

Percentile

47.4%

Related for CVE-2012-3279