3 results (0.006 seconds)

CVSS: 4.3EPSS: 1%CPEs: 6EXPL: 0

Cross-site scripting (XSS) vulnerability in HP Service Manager WebTier and Windows Client 9.20 and 9.21 before 9.21.661 p8 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. Cross-site scripting (XSS) en HP Service Manager WebTier y Windows Client 9.20 y 9.21 anterior a 9.21.661 p8 permite a atacantes remotos inyectar secuencias de comandos web o HTML a través de vectores no especificados. • http://h20566.www2.hp.com/portal/site/hpsc/template.PAGE/public/kb/docDisplay/?docId=emr_na-c04052075 http://www.securitytracker.com/id/1029541 https://exchange.xforce.ibmcloud.com/vulnerabilities/89975 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVSS: 5.2EPSS: 0%CPEs: 6EXPL: 0

Unspecified vulnerability in HP Service Manager WebTier and Windows Client 9.20 and 9.21 before 9.21.661 p8 allows remote authenticated users to execute arbitrary code via unknown vectors. Vulnerabilidad no especificada en HP Service Manager WebTier y Windows Client 9.20 y 9.21 antes de 9.21.661 p8 permite a los usuarios remotos autenticados ejecutar código arbitrario a través de vectores desconocidos. • http://h20566.www2.hp.com/portal/site/hpsc/template.PAGE/public/kb/docDisplay/?docId=emr_na-c04052075 http://www.securitytracker.com/id/1029541 https://exchange.xforce.ibmcloud.com/vulnerabilities/89974 •

CVSS: 4.3EPSS: 0%CPEs: 4EXPL: 0

Cross-site scripting (XSS) vulnerability in HP Service Manager Web Tier 7.11, 9.21, and 9.30, and HP Service Center Web Tier 6.28, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. Vulnerabilidad de ejecución de comandos en sitios cruzados (XSS) en HP Service Manager Web Tier v7.11, v9.21, y v9.30, y HP Service Center Web Tier v6.28 permite a atacantes remotos inyectar código web o HTML arbitrario a través de vectores no especificados. • https://h20566.www2.hp.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c03450382 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •