CVE-2008-5093: XSS
Cross-site scripting (XSS) vulnerability in the HTTP Protocol Stack (HTTPSTK) in Novell eDirectory before 8.8 SP3 allows remote attackers to inject arbitrary web script or HTML via unknown vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-5093?
The severity of CVE-2008-5093 is classified as high due to the potential for remote code execution via XSS.
How do I fix CVE-2008-5093?
To fix CVE-2008-5093, you should upgrade to Novell eDirectory version 8.8 SP3 or later, which includes the necessary patches.
What types of systems are vulnerable to CVE-2008-5093?
CVE-2008-5093 affects multiple versions of Novell eDirectory, specifically versions prior to 8.8 SP3.
What are the potential impacts of CVE-2008-5093?
The potential impacts of CVE-2008-5093 include unauthorized access to data and the ability to execute arbitrary scripts in the context of the user's session.
Can CVE-2008-5093 be exploited remotely?
Yes, CVE-2008-5093 can be exploited remotely, allowing attackers to inject arbitrary web scripts or HTML.