First published: Tue Mar 29 2011(Updated: )
Cross-site scripting (XSS) vulnerability in HP Diagnostics 7.5x and 8.0x before 8.05.54.225 allows remote attackers to inject arbitrary web script or HTML via unknown vectors.
Credit: hp-security-alert@hp.com
Affected Software | Affected Version | How to fix |
---|---|---|
HP Diagnostics | =8.0 | |
HP Diagnostics | =7.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-0892 has a medium severity rating due to the potential for cross-site scripting attacks.
To fix CVE-2011-0892, update HP Diagnostics to version 8.05.54.225 or later.
CVE-2011-0892 affects HP Diagnostics versions 7.5 and 8.0 before 8.05.54.225.
Remote attackers can exploit CVE-2011-0892 to inject arbitrary web scripts or HTML into HP Diagnostics.
The exact exploit vectors for CVE-2011-0892 are currently unknown, making it essential to apply recommended updates.