CVE-2011-1899: XSS
Published May 16, 2011
·Updated
Multiple cross-site scripting (XSS) vulnerabilities in CA eHealth 6.0.x, 6.1.x, 6.2.1, and 6.2.2 allow remote attackers to inject arbitrary web script or HTML via unspecified parameters.
Affected Software
5 affected components
CA eHealth=6.0
CA eHealth=6.1
CA eHealth=6.1.1
CA eHealth=6.2.1
CA eHealth=6.2.2
Event History
May 16, 2011
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2011-1899?
CVE-2011-1899 is classified as a medium severity vulnerability due to its potential to allow remote attackers to execute arbitrary scripts.
2
How do I fix CVE-2011-1899?
To fix CVE-2011-1899, update your CA eHealth software to a version that addresses these cross-site scripting vulnerabilities.
3
What systems are affected by CVE-2011-1899?
CVE-2011-1899 affects CA eHealth versions 6.0.x, 6.1.x, 6.2.1, and 6.2.2.
4
What type of vulnerability is CVE-2011-1899?
CVE-2011-1899 is a multiple cross-site scripting (XSS) vulnerability.
5
Can CVE-2011-1899 be exploited remotely?
Yes, CVE-2011-1899 can be exploited remotely by attackers to inject arbitrary web scripts or HTML.