Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2010-4111

Опубликовано: 22 дек. 2010
Источник: nvd
CVSS2: 4.3
EPSS Низкий

Описание

Cross-site scripting (XSS) vulnerability in HP Insight Diagnostics Online Edition before 8.5.1.3712 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Уязвимые конфигурации

Конфигурация 1

Одновременно

Одно из

cpe:2.3:a:hp:insight_diagnostics:*:*:online:*:*:*:*:*
Версия до 8.5.0.3625 (включая)
cpe:2.3:a:hp:insight_diagnostics:6.3.0.878:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:6.3.1.887:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:7.0.0.1198:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:7.0.1.1219:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:7.4.0.1570:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:7.5.0.1679:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:7.5.5.1681:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:7.6.0.1984:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:7.7.0.2112:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:7.8.0.2257:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:7.9.0.2359:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:7.9.1.2401:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:8.0.0.2587:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:8.1.0.2718:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:8.1.1.2784:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:8.1.5.2890:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:8.2.0.3058:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:8.2.5.3157:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:8.3.0.3320:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:8.4.0.3521:*:online:*:*:*:*:*
cpe:2.3:o:microsoft:windows:*:*:*:*:*:*:*:*
Конфигурация 2

Одновременно

Одно из

cpe:2.3:a:hp:insight_diagnostics:*:*:online:*:*:*:*:*
Версия до 8.5.0-11 (включая)
cpe:2.3:a:hp:insight_diagnostics:6.3.0-15:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:6.3.1-1:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:7.0.0-30:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:7.0.1-8:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:7.4.0-11:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:7.5.0-14:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:7.5.5-1:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:7.6.0-23:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:7.7.0-142:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:7.8.0-159:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:7.9.0-105:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:7.9.1-15:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:8.0.0-210:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:8.1.0-136:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:8.1.1-206:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:8.1.5-311:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:8.3.0-14:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:8.3.1-105:*:online:*:*:*:*:*
cpe:2.3:a:hp:insight_diagnostics:8.4.0-18:*:online:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

EPSS

Процентиль: 58%
0.00365
Низкий

4.3 Medium

CVSS2

Дефекты

CWE-79

Связанные уязвимости

github
больше 3 лет назад

Cross-site scripting (XSS) vulnerability in HP Insight Diagnostics Online Edition before 8.5.1.3712 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

EPSS

Процентиль: 58%
0.00365
Низкий

4.3 Medium

CVSS2

Дефекты

CWE-79