Lucene search

K
cve[email protected]CVE-2015-1565
HistoryOct 03, 2022 - 4:15 p.m.

CVE-2015-1565

2022-10-0316:15:51
CWE-79
web.nvd.nist.gov
21
cve-2015-1565
cross-site scripting
xss
hitachi
device manager
tiered storage manager
replication manager
global link manager
hitachi command suite

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

5.9 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

50.8%

Cross-site scripting (XSS) vulnerability in the online help in Hitachi Device Manager, Tiered Storage Manager, Replication Manager, and Global Link Manager before 8.1.2-00, and Compute Systems Manager before 7.6.1-08 and 8.x before 8.1.2-00, as used in Hitachi Command Suite, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Affected configurations

NVD
Node
hitachidevice_managerRange8.1.1
OR
hitachireplication_managerRange8.1.1
OR
hitachitiered_storage_managerRange8.1.1
AND
microsoftwindows
OR
novellopensuse
OR
redhatenterprise_linux
Node
hitachicompute_systems_managerRange7.6.1
OR
hitachicompute_systems_managerMatch8.0.0
OR
hitachicompute_systems_managerMatch8.1.0
OR
hitachicompute_systems_managerMatch8.1.1
OR
hitachiglobal_link_managerRange8.1.1
AND
microsoftwindows

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

5.9 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

50.8%

Related for CVE-2015-1565