First published: Mon Aug 06 2018(Updated: )
A remote cross site scripting vulnerability has been identified in HP Business Service Management software v9.1x, v9.20 - v9.25IP1.
Credit: security-alert@hpe.com
Affected Software | Affected Version | How to fix |
---|---|---|
HP Business Service Management | >=9.20<=9.25 | |
HP Business Service Management | =9.10 | |
HP Business Service Management | =9.25-ip1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-4392 has been classified as a high severity vulnerability due to its potential for remote exploitation.
To mitigate CVE-2016-4392, it is recommended to apply the latest security patches provided by HP for affected versions of Business Service Management.
CVE-2016-4392 affects HP Business Service Management versions 9.10, 9.20, and 9.25-IP1.
CVE-2016-4392 is categorized as a remote cross site scripting (XSS) vulnerability.
Yes, CVE-2016-4392 can be exploited by unauthenticated users remotely, increasing the risk of an attack.