CVE-2016-8517: XSS
Published Feb 15, 2018
·Updated
A cross site scripting vulnerability in HPE Systems Insight Manager in all versions prior to 7.6 was found.
Affected Software
1 affected component
HP Systems Insight Manager<7.6
Event History
Feb 15, 2018
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2016-8517?
CVE-2016-8517 has been classified with a medium severity level due to its cross-site scripting impact.
2
How do I fix CVE-2016-8517?
To fix CVE-2016-8517, upgrade your HPE Systems Insight Manager to version 7.6 or later.
3
What types of attacks can CVE-2016-8517 enable?
CVE-2016-8517 can enable attackers to execute arbitrary scripts in the context of the user's browser.
4
Which versions of HPE Systems Insight Manager are affected by CVE-2016-8517?
All versions of HPE Systems Insight Manager prior to 7.6 are affected by CVE-2016-8517.
5
Is there a patch available for CVE-2016-8517?
Yes, a patch is included in the upgrade to HPE Systems Insight Manager version 7.6 to resolve CVE-2016-8517.