First published: Mon Nov 05 2007(Updated: )
Cross-site scripting (XSS) vulnerability in Hitachi Web Server 01-00 through 03-10, as used by certain Cosminexus products, allows remote attackers to inject arbitrary web script or HTML via unspecified HTTP requests that trigger creation of a server-status page.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Hitachi Cosminexus Application Server | <=06_51_j | |
Hitachi uCosminexus Application Server Standard | <=06_51_j | |
Hitachi Cosminexus Developer Light Version 6 | <=06_51_j | |
Hitachi Cosminexus Developer Professional Version 6 | <=06_51_j | |
Hitachi uCosminexus Developer Standard | <=06_51_j | |
Hitachi Cosminexus Server | <=04_01 | |
Hitachi uCosminexus Application Server | <=07_50_01 | |
Hitachi uCosminexus Application Server | <=07_50_01 | |
Hitachi uCosminexus | <=06_71_d | |
Hitachi Cosminexus Developer Professional Version 6 | <=07_50_01 | |
Hitachi uCosminexus | <=07_50_01 | |
Hitachi ucosminexus Service Architect | <=07_50_01 | |
Hitachi ucosminexus service platform | <=07_50_01 | |
Hitachi Web Server | =01_00 | |
Hitachi Web Server | =01_00 | |
Hitachi Web Server | =01_01 | |
Hitachi Web Server | =01_01 | |
Hitachi Web Server | =01_01 | |
Hitachi Web Server | =01_01_d | |
Hitachi Web Server | =01_02_d | |
Hitachi Web Server | =01_02_d | |
Hitachi Web Server | =01_02_e | |
Hitachi Web Server | =02_00 | |
Hitachi Web Server | =02_00 | |
Hitachi Web Server | =02_00 | |
Hitachi Web Server | =02_00 | |
Hitachi Web Server | =02_00 | |
Hitachi Web Server | =02_00 | |
Hitachi Web Server | =02_00_a | |
Hitachi Web Server | =02_02 | |
Hitachi Web Server | =02_02 | |
Hitachi Web Server | =02_02 | |
Hitachi Web Server | =02_04_b | |
Hitachi Web Server | =02_04_b | |
Hitachi Web Server | =02_04_b | |
Hitachi Web Server | =02_04_b | |
Hitachi Web Server | =02_04_b | |
Hitachi Web Server | =02_06_a | |
Hitachi Web Server | =03_00 | |
Hitachi Web Server | =03_00 | |
Hitachi Web Server | =03_00 | |
Hitachi Web Server | =03_00 | |
Hitachi Web Server | =03_00_01 | |
Hitachi Web Server | =03_00_01 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2007-5809 is considered to be moderate, as it allows remote attackers to inject arbitrary web scripts or HTML.
To fix CVE-2007-5809, update the affected Hitachi Web Server to a version that mitigates this vulnerability.
CVE-2007-5809 affects various versions of Hitachi Web Server, Cosminexus Application Server, and Developer versions listed in the vulnerability description.
Yes, CVE-2007-5809 can be exploited remotely through specific HTTP requests.
CVE-2007-5809 is a Cross-site Scripting (XSS) vulnerability.