CVE-2011-1716: XSS
Published Apr 18, 2011
·Updated
Multiple cross-site scripting (XSS) vulnerabilities in the Web UI in Xymon before 4.3.1 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected Software
28 affected components
Xymon xymon=4.3.0-rc1
Xymon xymon=4.0
Xymon xymon=4.1.1
Xymon xymon=beta3
Xymon xymon=4.2.2
Xymon xymon=beta5
Xymon xymon=rc2
Xymon xymon=4.0.2
Xymon xymon=4.2.3
Xymon xymon=rc1
Xymon xymon=4.3.0-beta3
Xymon xymon=4.3.0-beta2
Xymon xymon=beta6
Xymon xymon=4.1.0
Xymon xymon=4.1.2-p1
Xymon xymon=4.2.0
Xymon xymon=4.0.4
Xymon xymon=rc3
Xymon xymon<=4.3.0
Xymon xymon=beta4
Xymon xymon=4.3.0-beta1
Xymon xymon=4.1.2
Xymon xymon=4.1.2-p2
Xymon xymon=rc6
Xymon xymon=rc5
Xymon xymon=4.0.1
Xymon xymon=rc4
Xymon xymon=4.0.3
Event History
Apr 18, 2011
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2011-1716?
The severity of CVE-2011-1716 is classified as medium due to multiple cross-site scripting vulnerabilities.
2
How do I fix CVE-2011-1716?
To fix CVE-2011-1716, upgrade to Xymon version 4.3.1 or later.
3
What types of vulnerabilities are associated with CVE-2011-1716?
CVE-2011-1716 is associated with multiple cross-site scripting (XSS) vulnerabilities.
4
Who is affected by CVE-2011-1716?
CVE-2011-1716 affects users running Xymon versions 4.3.0 and earlier.
5
Can CVE-2011-1716 be exploited remotely?
Yes, remote attackers can exploit CVE-2011-1716 to inject arbitrary web scripts or HTML.