CVE-2011-1862: XSS
Published Jun 14, 2011
·Updated
Cross-site scripting (XSS) vulnerability in HP Service Manager 7.02, 7.11, 9.20, and 9.21 and Service Center 6.2.8 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected Software
5 affected components
HP Service Center=6.2.8
HP Service Manager=7.02
HP Service Manager=7.11
HP Service Manager=9.20
HP Service Manager=9.21
Event History
Jun 14, 2011
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2011-1862?
CVE-2011-1862 has a Medium severity rating due to its potential for exploitation via Cross-site scripting.
2
How do I fix CVE-2011-1862?
To mitigate CVE-2011-1862, update to the latest patched version of HP Service Manager or HP Service Center.
3
Which versions of HP Service Manager are affected by CVE-2011-1862?
CVE-2011-1862 affects HP Service Manager versions 7.02, 7.11, 9.20, and 9.21.
4
Is HP Service Center vulnerable to CVE-2011-1862?
Yes, HP Service Center version 6.2.8 is also vulnerable to CVE-2011-1862.
5
What type of vulnerability is CVE-2011-1862?
CVE-2011-1862 is classified as a Cross-site scripting (XSS) vulnerability.