Executive Summary

Informations
NameCVE-2011-1863First vendor Publication2011-06-14
VendorCveLast vendor Modification2011-09-21

Security-Database Scoring CVSS v2

Cvss vector : (AV:N/AC:M/Au:S/C:C/I:P/A:P)
Cvss Base Score7.5Attack RangeNetwork
Cvss Impact Score8.5Attack ComplexityMedium
Cvss Expoit Score6.8AuthenticationRequires single instance
Calculate full CVSS 2.0 Vectors scores

Detail

HP Service Manager 7.02, 7.11, 9.20, and 9.21 and Service Center 6.2.8 allow remote authenticated users to conduct unspecified script injection attacks via unknown vectors.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-1863

CWE : Common Weakness Enumeration

idName
CWE-94Failure to Control Generation of Code ('Code Injection')

CPE : Common Platform Enumeration

TypeDescriptionCount
Application1
Application4

Open Source Vulnerability Database (OSVDB)

idDescription
73108HP Service Manager / Service Center Unspecified Authenticated XSS

Internal Sources (Detail)

SourceUrl
BIDhttp://www.securityfocus.com/bid/48168
HPhttp://marc.info/?l=bugtraq&m=130755929821099&w=2
http://marc.info/?l=bugtraq&m=130755929821099&w=2
SECTRACKhttp://www.securitytracker.com/id?1025611
SECUNIAhttp://secunia.com/advisories/44836
SREASONhttp://securityreason.com/securityalert/8273
XFhttp://xforce.iss.net/xforce/xfdb/67914

Alert History

If you want to see full details history, please login or register.
0
DateInformations
2013-05-10 23:00:13
  • Multiple Updates