First published: Mon May 29 2017(Updated: )
Cross-site scripting vulnerability in Hitachi Device Manager before 8.5.2-01 and Hitachi Replication Manager before 8.5.2-00 allows authenticated remote users to execute arbitrary JavaScript code.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Hitachi Device Manager | <=8.5.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-9298 is classified as a medium severity vulnerability due to its potential for cross-site scripting attacks.
To fix CVE-2017-9298, upgrade to Hitachi Device Manager version 8.5.2-01 or higher.
CVE-2017-9298 affects authenticated remote users of Hitachi Device Manager versions before 8.5.2-01.
CVE-2017-9298 is a cross-site scripting (XSS) vulnerability.
Yes, CVE-2017-9298 allows authenticated users to execute arbitrary JavaScript code.