CVE-2008-6095: XSS
Published Feb 9, 2009
·Updated
Cross-site scripting (XSS) vulnerability in surveillanceView.htm in OpenNMS 1.5.94 allows remote attackers to inject arbitrary web script or HTML via the viewName parameter.
Affected Software
1 affected component
OpenNMS OpenNMS=1.5.94
Event History
Feb 9, 2009
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Data Sourced
via NVD·05:30 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2008-6095?
CVE-2008-6095 is classified as a medium severity Cross-site scripting (XSS) vulnerability.
2
How do I fix CVE-2008-6095?
To fix CVE-2008-6095, upgrade OpenNMS to a version later than 1.5.94 that addresses the XSS vulnerability.
3
What parameters are affected by CVE-2008-6095?
CVE-2008-6095 specifically affects the viewName parameter in the surveillanceView.htm file.
4
Who can exploit CVE-2008-6095?
Remote attackers can exploit CVE-2008-6095 to inject arbitrary web script or HTML into the application.
5
What software versions are vulnerable to CVE-2008-6095?
OpenNMS version 1.5.94 is vulnerable to CVE-2008-6095.