First published: Fri Jan 26 2007(Updated: )
Multiple cross-site scripting (XSS) vulnerabilities in multiple Hitachi Web Server, uCosminexus, and Cosminexus products before 20070124 allow remote attackers to inject arbitrary web script or HTML via (1) HTTP Expect headers or (2) image maps.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Hitachi Hitachi Web Server | ||
Hitachi uCosminexus | ||
Hitachi uCosminexus Developer Standard | ||
Hitachi Cosminexus Server - Web edition | ||
Hitachi ucosminexus service platform | ||
Hitachi Cosminexus Server - Web edition | ||
Hitachi Cosminexus Server | =6 | |
Hitachi Cosminexus Developer Light Version 6 | ||
Hitachi Cosminexus Server - standard edition | ||
Hitachi Cosminexus Server | ||
Hitachi uCosminexus Application Server | ||
Hitachi Cosminexus Application Server | ||
Hitachi Cosminexus developer version 5 | ||
Hitachi uCosminexus | ||
Hitachi uCosminexus Application Server | ||
Hitachi ucosminexus Service Architect | ||
Hitachi uCosminexus Application Server | ||
Hitachi Cosminexus Server - standard edition | ||
Hitachi Cosminexus Developer Professional Version 6 | ||
Hitachi Cosminexus Server - enterprise edition |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-0514 is classified as a high severity vulnerability affecting multiple Hitachi Web Server and Cosminexus products.
To fix CVE-2007-0514, update your Hitachi Web Server or Cosminexus products to the latest version that addresses this vulnerability.
CVE-2007-0514 allows remote attackers to perform cross-site scripting (XSS) attacks via HTTP Expect headers or image maps.
CVE-2007-0514 affects various Hitachi products, including Hitachi Web Server, uCosminexus, and Cosminexus Server across several versions.
Yes, CVE-2007-0514 can be exploited by remote attackers without authentication, making it particularly dangerous.