Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2010-2103

Опубликовано: 27 мая 2010
Источник: nvd
CVSS2: 4.3
EPSS Средний

Описание

Cross-site scripting (XSS) vulnerability in axis2-admin/axis2-admin/engagingglobally in the administration console in Apache Axis2/Java 1.4.1, 1.5.1, and possibly other versions, as used in SAP Business Objects 12, 3com IMC, and possibly other products, allows remote attackers to inject arbitrary web script or HTML via the modules parameter. NOTE: some of these details are obtained from third party information.

Уязвимые конфигурации

Конфигурация 1

Одновременно

Одно из

cpe:2.3:a:apache:axis2:1.4.1:*:*:*:*:*:*:*
cpe:2.3:a:apache:axis2:1.5.1:*:*:*:*:*:*:*

Одно из

cpe:2.3:a:3com:intelligent_management_center:*:*:*:*:*:*:*:*
cpe:2.3:a:sap:business_objects:12:*:*:*:*:*:*:*
Конфигурация 2

Одно из

cpe:2.3:a:apache:axis2:1.4.1:*:*:*:*:*:*:*
cpe:2.3:a:apache:axis2:1.5.1:*:*:*:*:*:*:*

EPSS

Процентиль: 95%
0.21768
Средний

4.3 Medium

CVSS2

Дефекты

CWE-79

Связанные уязвимости

ubuntu
около 15 лет назад

Cross-site scripting (XSS) vulnerability in axis2-admin/axis2-admin/engagingglobally in the administration console in Apache Axis2/Java 1.4.1, 1.5.1, and possibly other versions, as used in SAP Business Objects 12, 3com IMC, and possibly other products, allows remote attackers to inject arbitrary web script or HTML via the modules parameter. NOTE: some of these details are obtained from third party information.

redhat
около 15 лет назад

Cross-site scripting (XSS) vulnerability in axis2-admin/axis2-admin/engagingglobally in the administration console in Apache Axis2/Java 1.4.1, 1.5.1, and possibly other versions, as used in SAP Business Objects 12, 3com IMC, and possibly other products, allows remote attackers to inject arbitrary web script or HTML via the modules parameter. NOTE: some of these details are obtained from third party information.

debian
около 15 лет назад

Cross-site scripting (XSS) vulnerability in axis2-admin/axis2-admin/en ...

github
около 3 лет назад

Improper Neutralization of Input During Web Page Generation in Apache Axis2

EPSS

Процентиль: 95%
0.21768
Средний

4.3 Medium

CVSS2

Дефекты

CWE-79