CVE-2017-8993: XSS
Published Feb 15, 2018
·Updated
A Remote Cross-Site Scripting vulnerability in HPE Project and Portfolio Management (PPM) version v9.30, v9.31, v9.32, v9.40 was found.
Affected Software
4 affected components
Microfocus Project And Portfolio Management=9.3.0
Microfocus Project And Portfolio Management=9.3.1
Microfocus Project And Portfolio Management=9.3.2
Microfocus Project And Portfolio Management=9.4.0
Event History
Feb 15, 2018
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-8993?
CVE-2017-8993 is classified as a high severity vulnerability due to its impact on web application security.
2
How do I fix CVE-2017-8993?
To mitigate CVE-2017-8993, upgrade to a patched version of Microfocus Project and Portfolio Management.
3
Which versions are affected by CVE-2017-8993?
CVE-2017-8993 affects Microfocus Project and Portfolio Management versions 9.30, 9.31, 9.32, and 9.40.
4
What type of vulnerability is CVE-2017-8993?
CVE-2017-8993 is a Remote Cross-Site Scripting vulnerability.
5
Can CVE-2017-8993 be exploited remotely?
Yes, CVE-2017-8993 can be exploited remotely, allowing attackers to execute malicious scripts on the client-side.