CVE-2010-5282: XSS
Multiple cross-site scripting (XSS) vulnerabilities in OpenText ECM (formerly Livelink ECM) 9.7.1 allow remote attackers to inject arbitrary web script or HTML via the (1) viewType and (2) sort parameters in a browse action to livelink/livelink; and the (3) nodeid, (4) setctx, and (5) support parameters to livelinkdav/nodes/OOBDAVWindow.html.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-5282?
CVE-2010-5282 is classified as a medium severity vulnerability due to its potential for exploit via cross-site scripting.
How do I fix CVE-2010-5282?
To fix CVE-2010-5282, it is recommended to update to the latest version of OpenText ECM that addresses these security issues.
What software is affected by CVE-2010-5282?
CVE-2010-5282 affects OpenText Livelink ECM version 9.7.1.
What type of vulnerability is CVE-2010-5282?
CVE-2010-5282 is a cross-site scripting (XSS) vulnerability that allows attackers to inject malicious scripts.
What parameters are involved in CVE-2010-5282?
CVE-2010-5282 involves the parameters viewType, sort, nodeid, setctx, and support in the browse action.