First published: Tue Oct 21 2008(Updated: )
Cross-site scripting (XSS) vulnerability in the management interface in HP SiteScope 9.0 build 911 allows remote attackers to inject arbitrary web script or HTML via an SNMP trap message.
Credit: PSIRT-CNA@flexerasoftware.com
Affected Software | Affected Version | How to fix |
---|---|---|
HP SiteScope | =9.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-4350 is considered a moderate severity cross-site scripting vulnerability.
To fix CVE-2007-4350, update HP SiteScope to the latest version that addresses this vulnerability.
CVE-2007-4350 affects HP SiteScope version 9.0, specifically its management interface.
CVE-2007-4350 allows remote attackers to perform cross-site scripting attacks through SNMP trap messages.
There are no specific workarounds for CVE-2007-4350 other than applying the relevant software update.