Lucene search

K
cveHpCVE-2013-2321
HistoryMay 02, 2013 - 3:31 a.m.

CVE-2013-2321

2013-05-0203:31:52
CWE-79
hp
web.nvd.nist.gov
18
cve-2013-2321
cross-site scripting
xss
hp service manager
web tier 9.31
nvd

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.8

Confidence

High

EPSS

0.001

Percentile

47.4%

Cross-site scripting (XSS) vulnerability in HP Service Manager Web Tier 9.31 before 9.31.2004 p2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Affected configurations

Nvd
Node
hpservice_manager_web_tierMatch9.31
AND
microsoftwindows
VendorProductVersionCPE
hpservice_manager_web_tier9.31cpe:2.3:a:hp:service_manager_web_tier:9.31:*:*:*:*:*:*:*
microsoftwindows*cpe:2.3:o:microsoft:windows:*:*:*:*:*:*:*:*

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.8

Confidence

High

EPSS

0.001

Percentile

47.4%

Related for CVE-2013-2321