// For flags

CVE-2015-1565

 

Severity Score

4.3
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Cross-site scripting (XSS) vulnerability in the online help in Hitachi Device Manager, Tiered Storage Manager, Replication Manager, and Global Link Manager before 8.1.2-00, and Compute Systems Manager before 7.6.1-08 and 8.x before 8.1.2-00, as used in Hitachi Command Suite, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Vulnerabilidad de XSS en la ayuda online en Hitachi Device Manager, Tiered Storage Manager, Replication Manager, y Global Link Manager anterior a 8.1.2-00, y Compute Systems Manager anterior a 7.6.1-08 y 8.x anterior a 8.1.2-00, utilizado en Hitachi Command Suite, permite a atacantes remotos inyectar secuencias de comandos web arbitrarios o HTML a través de vectores no especificados.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Medium
Authentication
None
Confidentiality
None
Integrity
Partial
Availability
None
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2015-02-09 CVE Reserved
  • 2015-02-09 CVE Published
  • 2024-09-17 CVE Updated
  • 2024-09-17 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Hitachi
Search vendor "Hitachi"
Device Manager
Search vendor "Hitachi" for product "Device Manager"
<= 8.1.1
Search vendor "Hitachi" for product "Device Manager" and version " <= 8.1.1"
-
Affected
in Microsoft
Search vendor "Microsoft"
Windows
Search vendor "Microsoft" for product "Windows"
*-
Safe
Hitachi
Search vendor "Hitachi"
Device Manager
Search vendor "Hitachi" for product "Device Manager"
<= 8.1.1
Search vendor "Hitachi" for product "Device Manager" and version " <= 8.1.1"
-
Affected
in Novell
Search vendor "Novell"
Opensuse
Search vendor "Novell" for product "Opensuse"
*-
Safe
Hitachi
Search vendor "Hitachi"
Device Manager
Search vendor "Hitachi" for product "Device Manager"
<= 8.1.1
Search vendor "Hitachi" for product "Device Manager" and version " <= 8.1.1"
-
Affected
in Redhat
Search vendor "Redhat"
Enterprise Linux
Search vendor "Redhat" for product "Enterprise Linux"
*-
Safe
Hitachi
Search vendor "Hitachi"
Replication Manager
Search vendor "Hitachi" for product "Replication Manager"
<= 8.1.1
Search vendor "Hitachi" for product "Replication Manager" and version " <= 8.1.1"
-
Affected
in Microsoft
Search vendor "Microsoft"
Windows
Search vendor "Microsoft" for product "Windows"
*-
Safe
Hitachi
Search vendor "Hitachi"
Replication Manager
Search vendor "Hitachi" for product "Replication Manager"
<= 8.1.1
Search vendor "Hitachi" for product "Replication Manager" and version " <= 8.1.1"
-
Affected
in Novell
Search vendor "Novell"
Opensuse
Search vendor "Novell" for product "Opensuse"
*-
Safe
Hitachi
Search vendor "Hitachi"
Replication Manager
Search vendor "Hitachi" for product "Replication Manager"
<= 8.1.1
Search vendor "Hitachi" for product "Replication Manager" and version " <= 8.1.1"
-
Affected
in Redhat
Search vendor "Redhat"
Enterprise Linux
Search vendor "Redhat" for product "Enterprise Linux"
*-
Safe
Hitachi
Search vendor "Hitachi"
Tiered Storage Manager
Search vendor "Hitachi" for product "Tiered Storage Manager"
<= 8.1.1
Search vendor "Hitachi" for product "Tiered Storage Manager" and version " <= 8.1.1"
-
Affected
in Microsoft
Search vendor "Microsoft"
Windows
Search vendor "Microsoft" for product "Windows"
*-
Safe
Hitachi
Search vendor "Hitachi"
Tiered Storage Manager
Search vendor "Hitachi" for product "Tiered Storage Manager"
<= 8.1.1
Search vendor "Hitachi" for product "Tiered Storage Manager" and version " <= 8.1.1"
-
Affected
in Novell
Search vendor "Novell"
Opensuse
Search vendor "Novell" for product "Opensuse"
*-
Safe
Hitachi
Search vendor "Hitachi"
Tiered Storage Manager
Search vendor "Hitachi" for product "Tiered Storage Manager"
<= 8.1.1
Search vendor "Hitachi" for product "Tiered Storage Manager" and version " <= 8.1.1"
-
Affected
in Redhat
Search vendor "Redhat"
Enterprise Linux
Search vendor "Redhat" for product "Enterprise Linux"
*-
Safe
Hitachi
Search vendor "Hitachi"
Compute Systems Manager
Search vendor "Hitachi" for product "Compute Systems Manager"
<= 7.6.1
Search vendor "Hitachi" for product "Compute Systems Manager" and version " <= 7.6.1"
-
Affected
in Microsoft
Search vendor "Microsoft"
Windows
Search vendor "Microsoft" for product "Windows"
*-
Safe
Hitachi
Search vendor "Hitachi"
Compute Systems Manager
Search vendor "Hitachi" for product "Compute Systems Manager"
8.0.0
Search vendor "Hitachi" for product "Compute Systems Manager" and version "8.0.0"
-
Affected
in Microsoft
Search vendor "Microsoft"
Windows
Search vendor "Microsoft" for product "Windows"
*-
Safe
Hitachi
Search vendor "Hitachi"
Compute Systems Manager
Search vendor "Hitachi" for product "Compute Systems Manager"
8.1.0
Search vendor "Hitachi" for product "Compute Systems Manager" and version "8.1.0"
-
Affected
in Microsoft
Search vendor "Microsoft"
Windows
Search vendor "Microsoft" for product "Windows"
*-
Safe
Hitachi
Search vendor "Hitachi"
Compute Systems Manager
Search vendor "Hitachi" for product "Compute Systems Manager"
8.1.1
Search vendor "Hitachi" for product "Compute Systems Manager" and version "8.1.1"
-
Affected
in Microsoft
Search vendor "Microsoft"
Windows
Search vendor "Microsoft" for product "Windows"
*-
Safe
Hitachi
Search vendor "Hitachi"
Global Link Manager
Search vendor "Hitachi" for product "Global Link Manager"
<= 8.1.1
Search vendor "Hitachi" for product "Global Link Manager" and version " <= 8.1.1"
-
Affected
in Microsoft
Search vendor "Microsoft"
Windows
Search vendor "Microsoft" for product "Windows"
*-
Safe