CVE-2007-5472: XSS
Cross-site scripting (XSS) vulnerability in the Server component in CA Host-Based Intrusion Prevention System (HIPS) before 8.0.0.93 allows remote attackers to inject arbitrary web script or HTML via requests that are written to logs for later display in the log viewer.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2007-5472?
CVE-2007-5472 is considered a medium severity vulnerability due to its ability to facilitate cross-site scripting attacks.
How do I fix CVE-2007-5472?
To fix CVE-2007-5472, upgrade to CA Host-Based Intrusion Prevention System version 8.0.0.93 or later.
Who is affected by CVE-2007-5472?
CVE-2007-5472 affects users of CA Host-Based Intrusion Prevention System versions prior to 8.0.0.93.
What type of vulnerability is CVE-2007-5472?
CVE-2007-5472 is a cross-site scripting (XSS) vulnerability.
What can attackers do through CVE-2007-5472?
Attackers can inject arbitrary web script or HTML via logging requests that are displayed in the log viewer.