1 results (0.004 seconds)

CVSS: 5.4EPSS: 0%CPEs: 4EXPL: 0

A Remote Cross-Site Scripting vulnerability in HPE Project and Portfolio Management (PPM) version v9.30, v9.31, v9.32, v9.40 was found. IBM Maximo Asset Management versiones 7.5 y 7.6 podría permitir que un atacante remoto incluya archivos arbitrarios y, como consecuencia, ejecute código en el servidor Web vulnerable. IBM X-Force ID: 129106. • http://www.securityfocus.com/bid/100087 http://www.securitytracker.com/id/1039065 https://support.hpe.com/hpsc/doc/public/display?docId=emr_na-hpesbgn03766en_us • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •