First published: Thu Apr 15 2021(Updated: )
A security vulnerability in HPE IceWall SSO Domain Gateway Option (Dgfw) module version 10.0 on RHEL 5/6/7, version 10.0 on HP-UX 11i v3, version 10.0 on Windows and 11.0 on Windows could be exploited remotely to allow cross-site scripting (XSS).
Credit: security-alert@hpe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Hp Icewall Sso Dgfw | =10.0 | |
Hp Icewall Sso Dgfw | =11.0 | |
Microsoft Windows | ||
Redhat Enterprise Linux | =5.0 | |
Redhat Enterprise Linux | =6.0 | |
Redhat Enterprise Linux | =7.0 | |
HP HP-UX | =11i-v3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2021-26582 is rated as medium with a CVSS score of 6.1.
CVE-2021-26582 can be exploited remotely to allow cross-site scripting (XSS) attacks.
Versions 10.0 and 11.0 of HPE IceWall SSO Dgfw are affected by CVE-2021-26582.
Microsoft Windows is not vulnerable to CVE-2021-26582.
To mitigate CVE-2021-26582, apply the necessary patches and updates provided by the vendor.