CVE-2017-14359: MFSBGN03788 rev.1 - HPE Performance Center, Remote Cross-Site Scripting (XSS)
Published Nov 3, 2017
·Updated
A potential security vulnerability has been identified in HPE Performance Center versions 12.20. The vulnerability could be remotely exploited to allow cross-site scripting.
Affected Software
1 affected component
HP Performance Center=12.20
Event History
Nov 3, 2017
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-14359?
CVE-2017-14359 has been classified as a medium severity vulnerability.
2
How can I fix CVE-2017-14359?
To fix CVE-2017-14359, apply the latest security updates provided by HPE for Performance Center version 12.20.
3
What types of attacks can CVE-2017-14359 enable?
CVE-2017-14359 can enable cross-site scripting (XSS) attacks that could lead to unauthorized actions on behalf of users.
4
Which software versions are affected by CVE-2017-14359?
CVE-2017-14359 specifically affects HPE Performance Center version 12.20.
5
Is CVE-2017-14359 exploitable remotely?
Yes, CVE-2017-14359 can be remotely exploited by an attacker to carry out cross-site scripting attacks.