CVE-2012-2021: XSS
Published Jul 16, 2012
·Updated
Multiple cross-site scripting (XSS) vulnerabilities in HP AssetManager 5.20, 5.21, 5.22, and 9.30 allow remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
Affected Software
4 affected components
hp AssetManager=5.20
hp AssetManager=5.21
hp AssetManager=5.22
hp AssetManager=9.30
Event History
Jul 16, 2012
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-2021?
CVE-2012-2021 has been classified with a medium severity level due to its potential for cross-site scripting vulnerabilities.
2
How do I fix CVE-2012-2021?
To fix CVE-2012-2021, it is recommended to upgrade to a version of HP AssetManager that is not affected by this vulnerability.
3
Which versions of HP AssetManager are affected by CVE-2012-2021?
CVE-2012-2021 affects HP AssetManager versions 5.20, 5.21, 5.22, and 9.30.
4
Can CVE-2012-2021 be exploited remotely?
Yes, CVE-2012-2021 can be exploited by remote authenticated users through various unspecified vectors.
5
What type of vulnerability is CVE-2012-2021?
CVE-2012-2021 is classified as a cross-site scripting (XSS) vulnerability.