CVE-2010-0452: XSS
Multiple cross-site scripting (XSS) vulnerabilities in HP Project and Portfolio Management Center (PPMC, formerly Mercury IT Governance) 7.1 through SP10 and 7.5 through SP3 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What are the XSS vulnerabilities associated with CVE-2010-0452?
CVE-2010-0452 identifies multiple cross-site scripting vulnerabilities in HP Project and Portfolio Management Center versions 7.1 through SP10 and 7.5 through SP3.
What is the impact of CVE-2010-0452?
The impact of CVE-2010-0452 allows remote attackers to inject arbitrary web script or HTML into the affected systems.
How can I identify if my system is affected by CVE-2010-0452?
To identify if your system is affected by CVE-2010-0452, check if you are running HP Project and Portfolio Management Center versions 7.1 through SP10 or 7.5 through SP3.
What measures can be taken to protect against CVE-2010-0452?
To protect against CVE-2010-0452, it's recommended to upgrade to a patched version or apply security updates provided by HP that address these vulnerabilities.
Who can exploit the vulnerabilities identified in CVE-2010-0452?
Anyone with remote access to the affected HP Project and Portfolio Management Center software can exploit the vulnerabilities identified in CVE-2010-0452.