First published: Sat Sep 08 2007(Updated: )
The javadoc tool in Cosminexus Developer's Kit for Java in Cosminexus 7 and 7.5 can generate HTML documents that contain cross-site scripting (XSS) vulnerabilities, which allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. NOTE: this is probably the same issue as CVE-2007-3503.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Hitachi uCosminexus Application Server | =07_00 | |
Hitachi uCosminexus Application Server | =07_00 | |
Hitachi uCosminexus Application Server | =07_00 | |
Hitachi uCosminexus Application Server | =07_00 | |
Hitachi uCosminexus Application Server | =07_00 | |
Hitachi uCosminexus Application Server | =07_00_01 | |
Hitachi uCosminexus Application Server | =07_00_01 | |
Hitachi uCosminexus Application Server | =07_00_01 | |
Hitachi uCosminexus Application Server | =07_00_02 | |
Hitachi uCosminexus Application Server | =07_00_03 | |
Hitachi uCosminexus Application Server | =07_10 | |
Hitachi uCosminexus Application Server | =07_10 | |
Hitachi uCosminexus Application Server | =07_10 | |
Hitachi uCosminexus Application Server | =07_10 | |
Hitachi uCosminexus Application Server | =07_10 | |
Hitachi uCosminexus Application Server | =07_10 | |
Hitachi uCosminexus Application Server | =07_10_01 | |
Hitachi uCosminexus Application Server | =07_10_01 | |
Hitachi uCosminexus Application Server | =07_10_01 | |
Hitachi uCosminexus Application Server | =7_20 | |
Hitachi uCosminexus Application Server | =7_20_01 | |
Hitachi uCosminexus Application Server | =07_00 | |
Hitachi uCosminexus Application Server | =07_00 | |
Hitachi uCosminexus Application Server | =07_00 | |
Hitachi uCosminexus Application Server | =07_00 | |
Hitachi uCosminexus Application Server | =07_00 | |
Hitachi uCosminexus Application Server | =07_00_01 | |
Hitachi uCosminexus Application Server | =07_00_01 | |
Hitachi uCosminexus Application Server | =07_00_01 | |
Hitachi uCosminexus Application Server | =07_00_01 | |
Hitachi uCosminexus Application Server | =07_00_02 | |
Hitachi uCosminexus Application Server | =07_00_03 | |
Hitachi uCosminexus Application Server | =07_10 | |
Hitachi uCosminexus Application Server | =07_10 | |
Hitachi uCosminexus Application Server | =07_10 | |
Hitachi uCosminexus Application Server | =07_10 | |
Hitachi uCosminexus Application Server | =07_10 | |
Hitachi uCosminexus Application Server | =07_10 | |
Hitachi uCosminexus Application Server | =7_10_01 | |
Hitachi uCosminexus Application Server | =7_10_01 | |
Hitachi uCosminexus Application Server | =7_10_01 | |
Hitachi uCosminexus Application Server | =7_20 | |
Hitachi uCosminexus Application Server | =7_20_01 | |
Hitachi uCosminexus | =07_00 | |
Hitachi uCosminexus | =07_00_01 | |
Hitachi uCosminexus | =07_00_02 | |
Hitachi uCosminexus | =07_00_03 | |
Hitachi uCosminexus | =07_10 | |
Hitachi uCosminexus | =07_10_01 | |
Hitachi uCosminexus | =07_20 | |
Hitachi uCosminexus | =07_20_01 | |
Hitachi uCosminexus | =07_50 | |
Hitachi ucosminexus service platform | =07_00 | |
Hitachi ucosminexus service platform | =07_00 | |
Hitachi ucosminexus service platform | =07_00_01 | |
Hitachi ucosminexus service platform | =07_00_01 | |
Hitachi ucosminexus service platform | =07_00_02 | |
Hitachi ucosminexus service platform | =07_00_03 | |
Hitachi ucosminexus service platform | =07_10 | |
Hitachi ucosminexus service platform | =07_10 | |
Hitachi ucosminexus service platform | =07_10 | |
Hitachi ucosminexus service platform | =07_10_01 | |
Hitachi ucosminexus service platform | =07_10_01 | |
Hitachi ucosminexus service platform | =07_20 | |
Hitachi ucosminexus service platform | =7_20_01 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-4760 is classified as a medium severity vulnerability due to its potential for cross-site scripting attacks.
To fix CVE-2007-4760, you should update to a patched version of the Cosminexus Developer's Kit for Java.
CVE-2007-4760 affects the Cosminexus Developer's Kit for Java versions 7.0 and 7.5 across various operating systems.
CVE-2007-4760 allows attackers to execute cross-site scripting (XSS) attacks by injecting arbitrary web scripts or HTML.
CVE-2007-4760 remains relevant as many systems may still be running affected versions without the applied security updates.