CVE-2009-4149: XSS
Published Dec 9, 2009
·Updated
Cross-site scripting (XSS) vulnerability in the web interface in CA Service Desk 12.1 allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter.
Affected Software
1 affected component
CA Service Desk=12.1
Remediation
Patch Available
Event History
Dec 9, 2009
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2009-4149?
CVE-2009-4149 is considered a medium severity vulnerability due to its potential for exploitation through cross-site scripting.
2
How do I fix CVE-2009-4149?
To fix CVE-2009-4149, upgrade CA Service Desk to a version where the XSS vulnerability is patched.
3
What types of attacks can exploit CVE-2009-4149?
CVE-2009-4149 can be exploited to perform cross-site scripting attacks, allowing attackers to inject malicious scripts into web pages.
4
Which version of CA Service Desk is affected by CVE-2009-4149?
CVE-2009-4149 affects CA Service Desk version 12.1.
5
Who is vulnerable to CVE-2009-4149?
Organizations using CA Service Desk 12.1 without the necessary patches are vulnerable to CVE-2009-4149.