First published: Tue Jan 24 2012(Updated: )
Cross-site scripting (XSS) vulnerability in Hitachi IT Operations Analyzer 02-01, 02-51 through 02-51-01, and 02-53 through 02-53-02 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Hitachi IT Operations Analyzer | =02-01 | |
Hitachi IT Operations Analyzer | =02-51 | |
Hitachi IT Operations Analyzer | =02-51-01 | |
Hitachi IT Operations Analyzer | =02-53 | |
Hitachi IT Operations Analyzer | =02-53-01 | |
Hitachi IT Operations Analyzer | =02-53-02 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-0917 is classified as a medium severity vulnerability due to its potential to allow XSS attacks.
To fix CVE-2012-0917, users should apply the latest security patches provided by Hitachi for the affected versions of IT Operations Analyzer.
CVE-2012-0917 affects versions 02-01, 02-51, 02-51-01, 02-53, 02-53-01, and 02-53-02 of Hitachi IT Operations Analyzer.
Due to CVE-2012-0917, remote attackers can execute cross-site scripting (XSS) attacks, allowing them to inject arbitrary web scripts or HTML.
While the most secure option is to apply the patch, temporary workarounds may include input validation or sanitizing user inputs to mitigate XSS risks.