Lucene search

K
nvd[email protected]NVD:CVE-2009-1288
HistoryApr 13, 2009 - 4:30 p.m.

CVE-2009-1288

2009-04-1316:30:00
CWE-79
web.nvd.nist.gov
2

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.7

Confidence

High

EPSS

0.002

Percentile

61.8%

Multiple cross-site scripting (XSS) vulnerabilities in the Advanced Management Module (AMM) on the IBM BladeCenter, including the BladeCenter H with BPET36H 54, allow remote attackers to inject arbitrary web script or HTML via (1) the username in a login action or (2) the PATH parameter to private/file_management.ssi in the File manager.

Affected configurations

Nvd
Node
ibmadvanced_management_moduleMatch1.36h
AND
ibmbladecenterMatche1881
OR
ibmbladecenterMatche7967
OR
ibmbladecenterMatche8677
OR
ibmbladecenterMatchh7989
OR
ibmbladecenterMatchh8852
OR
ibmbladecenterMatchhc107996
OR
ibmbladecenterMatchhs121916
OR
ibmbladecenterMatchhs128014
OR
ibmbladecenterMatchhs128028
OR
ibmbladecenterMatchhs201883
OR
ibmbladecenterMatchhs211885
OR
ibmbladecenterMatchhs218853
OR
ibmbladecenterMatchhs21_xm1915
OR
ibmbladecenterMatchhs21_xm7995
OR
ibmbladecenterMatchht8740
OR
ibmbladecenterMatchht8750
OR
ibmbladecenterMatchjs127998
OR
ibmbladecenterMatchjs217988
OR
ibmbladecenterMatchjs218844
OR
ibmbladecenterMatchjs227998
OR
ibmbladecenterMatchls208850
OR
ibmbladecenterMatchls217971
OR
ibmbladecenterMatchls417972
OR
ibmbladecenterMatchqs210792
OR
ibmbladecenterMatchqs220793
OR
ibmbladecenterMatchs1948
OR
ibmbladecenterMatchs8886
OR
ibmbladecenterMatcht8720
OR
ibmbladecenterMatcht8730
VendorProductVersionCPE
ibmadvanced_management_module1.36hcpe:2.3:a:ibm:advanced_management_module:1.36h:*:*:*:*:*:*:*
ibmbladecenterecpe:2.3:h:ibm:bladecenter:e:*:1881:*:*:*:*:*
ibmbladecenterecpe:2.3:h:ibm:bladecenter:e:*:7967:*:*:*:*:*
ibmbladecenterecpe:2.3:h:ibm:bladecenter:e:*:8677:*:*:*:*:*
ibmbladecenterhcpe:2.3:h:ibm:bladecenter:h:*:7989:*:*:*:*:*
ibmbladecenterhcpe:2.3:h:ibm:bladecenter:h:*:8852:*:*:*:*:*
ibmbladecenterhc10cpe:2.3:h:ibm:bladecenter:hc10:*:7996:*:*:*:*:*
ibmbladecenterhs12cpe:2.3:h:ibm:bladecenter:hs12:*:1916:*:*:*:*:*
ibmbladecenterhs12cpe:2.3:h:ibm:bladecenter:hs12:*:8014:*:*:*:*:*
ibmbladecenterhs12cpe:2.3:h:ibm:bladecenter:hs12:*:8028:*:*:*:*:*
Rows per page:
1-10 of 301

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.7

Confidence

High

EPSS

0.002

Percentile

61.8%

Related for NVD:CVE-2009-1288