First published: Tue Oct 09 2007(Updated: )
Multiple cross-site scripting (XSS) vulnerabilities in HP System Management Homepage (SMH) in HP-UX B.11.11, B.11.23, and B.11.31, and SMH before 2.1.10 for Linux and Windows, allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
HPE HP-UX | =11.11 | |
HPE HP-UX | =11.23 | |
HPE HP-UX | =11.31 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-5302 is considered to have a high severity due to the potential for remote attackers to execute arbitrary web scripts.
To fix CVE-2007-5302, upgrade the HP System Management Homepage to version 2.1.10 or later.
CVE-2007-5302 affects HP-UX versions 11.11, 11.23, and 11.31, as well as earlier versions of SMH for Linux and Windows.
CVE-2007-5302 is a cross-site scripting (XSS) vulnerability that allows for script injection via multiple vectors.
Yes, CVE-2007-5302 can be exploited remotely by attackers to inject malicious scripts into the affected systems.