CVE-2007-3062: XSS
Published Jun 6, 2007
·Updated
Cross-site scripting (XSS) vulnerability in HP System Management Homepage (SMH) before 2.1.2 running on Linux and Windows allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected Software
5 affected components
HP System Management Homepage=2.0.0
HP System Management Homepage=2.0.1
HP System Management Homepage=2.0.2
HP System Management Homepage=2.1
HP System Management Homepage=2.1.1
Remediation
Patch Available
Patch Available
Event History
Jun 6, 2007
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-3062?
CVE-2007-3062 is classified as a medium severity Cross-Site Scripting (XSS) vulnerability.
2
How do I fix CVE-2007-3062?
To fix CVE-2007-3062, upgrade HP System Management Homepage to version 2.1.2 or later.
3
Which versions of HP System Management Homepage are affected by CVE-2007-3062?
CVE-2007-3062 affects HP System Management Homepage versions 2.0.0, 2.0.1, 2.0.2, and 2.1.1.
4
What types of attacks can be executed using CVE-2007-3062?
CVE-2007-3062 allows attackers to inject arbitrary web scripts or HTML, which can lead to data theft or account compromise.
5
Is CVE-2007-3062 present in Linux installations of HP System Management Homepage?
Yes, CVE-2007-3062 can be exploited on Linux installations of HP System Management Homepage prior to version 2.1.2.