First published: Sat Dec 17 2005(Updated: )
Multiple cross-site scripting (XSS) vulnerabilities in Hitachi Cosminexus Collaboration Portal 06-00 through 06-10-/B, Groupmax Collaboration Portal 07-00 through 07-10-/B, and Groupmax Collaboration Web Client 07-00 through 07-10-/A allow remote attackers to inject arbitrary web script or HTML via the (1) Schedule and (2) Calendar components.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Hitachi Groupmax Collaboration Web Client | <=07_10_a | |
Hitachi Groupmax Collaboration Web Client | =07_00 | |
Hitachi Groupmax collaboration | =07_00 | |
Hitachi uCosminexus Collaboration Portal | <=06_10_b | |
Hitachi uCosminexus Collaboration Portal | =06_00 | |
Hitachi Groupmax collaboration | <=07_10_b |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-4322 is classified as a medium severity vulnerability due to its potential to allow remote attackers to conduct cross-site scripting attacks.
To fix CVE-2005-4322, update affected versions of Hitachi software, such as Groupmax Collaboration Web Client and Cosminexus Collaboration Portal, to their latest releases.
CVE-2005-4322 affects Hitachi Cosminexus Collaboration Portal versions 06-00 through 06-10-B, Groupmax Collaboration Portal versions 07-00 through 07-10-B, and Groupmax Collaboration Web Client versions 07-00 through 07-10-A.
CVE-2005-4322 allows remote attackers to inject arbitrary web scripts or HTML via multiple cross-site scripting vulnerabilities.
Yes, CVE-2005-4322 specifically targets various versions of Hitachi's Groupmax and Cosminexus collaboration software.