First published: Tue Jun 14 2011(Updated: )
HP Service Manager 7.02, 7.11, 9.20, and 9.21 and Service Center 6.2.8 allow remote authenticated users to conduct unspecified script injection attacks via unknown vectors.
Credit: hp-security-alert@hp.com
Affected Software | Affected Version | How to fix |
---|---|---|
HP Service Manager | =9.20 | |
HP Service Manager | =7.02 | |
HP Service Manager | =7.11 | |
HP Service Manager | =9.21 | |
Hp Service Center | =6.2.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-1863 involves script injection attacks that can be exploited by remote authenticated users in specific versions of HP Service Manager and Service Center.
The affected versions include HP Service Manager 7.02, 7.11, 9.20, and 9.21.
HP Service Center version 6.2.8 is affected by CVE-2011-1863.
To mitigate the risks, it is recommended to update to the latest patched versions of HP Service Manager and Service Center.
The severity of CVE-2011-1863 depends on the context of usage, exposure, and data sensitivity within the affected HP products.