4.3
CVSSv2

CVE-2007-3623

Published: 09/07/2007 Updated: 29/07/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in the Hitachi JP1/HiCommand Device Manager, Tiered Storage Manager, Replication Monitor, and GlobalLink Availability Manager prior to 20070528 allows remote malicious users to inject arbitrary web script or HTML via the Expect HTTP header.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

hitachi jp1-hicommand device manager 02_30

hitachi jp1-hicommand device manager 05_00

hitachi jp1-hicommand replication monitor 04_00

hitachi jp1-hicommand replication monitor 05_00

hitachi jp1-hicommand tiered storage manager 05_00

hitachi jp1-hicommand tiered storage manager 05_50

hitachi jp1-hicommand global link availability manager 05_00

hitachi jp1-hicommand tiered storage manager 04_30

hitachi jp1-hicommand device manager 05_10

hitachi jp1-hicommand device manager 05_50

hitachi jp1-hicommand replication monitor 05_50

hitachi jp1-hicommand tiered storage manager 04_00