CVE-2007-4350: XSS
Published Oct 21, 2008
·Updated
Cross-site scripting (XSS) vulnerability in the management interface in HP SiteScope 9.0 build 911 allows remote attackers to inject arbitrary web script or HTML via an SNMP trap message.
Affected Software
2 affected components
Micro Focus SiteScope=9.0
HP SiteScope=9.0
Event History
Oct 21, 2008
CVE Published
06:00 PM
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-4350?
CVE-2007-4350 is considered a moderate severity cross-site scripting vulnerability.
2
How do I fix CVE-2007-4350?
To fix CVE-2007-4350, update HP SiteScope to the latest version that addresses this vulnerability.
3
What does CVE-2007-4350 affect?
CVE-2007-4350 affects HP SiteScope version 9.0, specifically its management interface.
4
What type of attack does CVE-2007-4350 allow?
CVE-2007-4350 allows remote attackers to perform cross-site scripting attacks through SNMP trap messages.
5
Is there a workaround for CVE-2007-4350?
There are no specific workarounds for CVE-2007-4350 other than applying the relevant software update.