CVE-2013-6198
https://notcve.org/view.php?id=CVE-2013-6198
Cross-site scripting (XSS) vulnerability in HP Service Manager WebTier and Windows Client 9.20 and 9.21 before 9.21.661 p8 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. Cross-site scripting (XSS) en HP Service Manager WebTier y Windows Client 9.20 y 9.21 anterior a 9.21.661 p8 permite a atacantes remotos inyectar secuencias de comandos web o HTML a través de vectores no especificados. • http://h20566.www2.hp.com/portal/site/hpsc/template.PAGE/public/kb/docDisplay/?docId=emr_na-c04052075 http://www.securitytracker.com/id/1029541 https://exchange.xforce.ibmcloud.com/vulnerabilities/89975 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •
CVE-2013-6197
https://notcve.org/view.php?id=CVE-2013-6197
Unspecified vulnerability in HP Service Manager WebTier and Windows Client 9.20 and 9.21 before 9.21.661 p8 allows remote authenticated users to execute arbitrary code via unknown vectors. Vulnerabilidad no especificada en HP Service Manager WebTier y Windows Client 9.20 y 9.21 antes de 9.21.661 p8 permite a los usuarios remotos autenticados ejecutar código arbitrario a través de vectores desconocidos. • http://h20566.www2.hp.com/portal/site/hpsc/template.PAGE/public/kb/docDisplay/?docId=emr_na-c04052075 http://www.securitytracker.com/id/1029541 https://exchange.xforce.ibmcloud.com/vulnerabilities/89974 •
CVE-2013-4844
https://notcve.org/view.php?id=CVE-2013-4844
Unspecified vulnerability in HP Service Manager 7.11, 9.21, 9.30, 9.31, and 9.32, and ServiceCenter 6.2.8, allows remote attackers to execute arbitrary code via unknown vectors. Vulnerabilidad no especificada en HP Service Manager 7.11, 9.21, 9.30, 9.31, y 9.32, y ServiceCenter 6.2.8, permite a atacantes remotos ejecutar código arbitrario a través de vectores desconocidos. • https://h20564.www2.hp.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04026812 •
CVE-2013-4831
https://notcve.org/view.php?id=CVE-2013-4831
HP Service Manager 9.30 through 9.32 does not properly manage privileges, which allows remote authenticated users to obtain sensitive information or modify data via unspecified vectors. HP Service Manager 9.30 hasta 9.32 no administra apropiadamente los privilegios, lo que permite a usuarios remotos autenticados obtener información sensible o modificar datos a través de vectores no especificados. • http://h20566.www2.hp.com/portal/site/hpsc/template.PAGE/public/kb/docDisplay/?docId=emr_na-c03960916 •
CVE-2013-4833
https://notcve.org/view.php?id=CVE-2013-4833
Cross-site scripting (XSS) vulnerability in HP Service Manager 9.30 through 9.32 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. Vulnerabilidad de XSS en HP Service Manager 9.30 hasta la versión 9.32 permite a atacantes remotos inyectar script web o HTML arbitrario a través de vectores sin especificar. • http://h20566.www2.hp.com/portal/site/hpsc/template.PAGE/public/kb/docDisplay/?docId=emr_na-c03960916 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •