First published: Thu Mar 20 2008(Updated: )
Cross-site scripting (XSS) vulnerability in SolutionSearch.do in ManageEngine SupportCenter Plus 7.0.0 allows remote attackers to inject arbitrary web script or HTML via the searchText parameter, a related issue to CVE-2008-1299. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
ManageEngine SupportCenter Plus | =7.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-1432 has a severity rating that indicates it poses a significant risk due to its XSS vulnerability.
To fix CVE-2008-1432, users should upgrade to a patched version of ManageEngine SupportCenter Plus beyond 7.0.0.
CVE-2008-1432 specifically affects users running ManageEngine SupportCenter Plus version 7.0.0.
CVE-2008-1432 enables remote attackers to perform cross-site scripting (XSS) attacks.
Yes, CVE-2008-1432 is related to CVE-2008-1299, as both deal with vulnerabilities in ManageEngine SupportCenter Plus.