Cross-site scripting (XSS) vulnerability in the Hosting Control Panel (psoft.hsphere.CP) in Positive Software H-Sphere 2.4.3 Patch 8 and earlier allows remote attackers to inject arbitrary web script or HTML via the login parameter in a login action.
Name | Vendor | Start Version | End Version |
---|---|---|---|
H-sphere | Positive_software | 2.4.1 (including) | 2.4.1 (including) |
H-sphere | Positive_software | 2.4.1_patch_1 (including) | 2.4.1_patch_1 (including) |
H-sphere | Positive_software | 2.4.1_patch_2 (including) | 2.4.1_patch_2 (including) |
H-sphere | Positive_software | 2.4.1_patch_3 (including) | 2.4.1_patch_3 (including) |
H-sphere | Positive_software | 2.4.1_patch_4 (including) | 2.4.1_patch_4 (including) |
H-sphere | Positive_software | 2.4.1_patch_5 (including) | 2.4.1_patch_5 (including) |
H-sphere | Positive_software | 2.4.1_patch_6 (including) | 2.4.1_patch_6 (including) |
H-sphere | Positive_software | 2.4.1_patch_7 (including) | 2.4.1_patch_7 (including) |
H-sphere | Positive_software | 2.4.2 (including) | 2.4.2 (including) |
H-sphere | Positive_software | 2.4.2_beta_1 (including) | 2.4.2_beta_1 (including) |
H-sphere | Positive_software | 2.4.2_beta_2 (including) | 2.4.2_beta_2 (including) |
H-sphere | Positive_software | 2.4.2_beta_3 (including) | 2.4.2_beta_3 (including) |
H-sphere | Positive_software | 2.4.2_patch_1 (including) | 2.4.2_patch_1 (including) |
H-sphere | Positive_software | 2.4.2_patch_2 (including) | 2.4.2_patch_2 (including) |
H-sphere | Positive_software | 2.4.2_patch_3 (including) | 2.4.2_patch_3 (including) |
H-sphere | Positive_software | 2.4.2_patch_4 (including) | 2.4.2_patch_4 (including) |
H-sphere | Positive_software | 2.4.2_patch_5 (including) | 2.4.2_patch_5 (including) |
H-sphere | Positive_software | 2.4.2_rc1 (including) | 2.4.2_rc1 (including) |
H-sphere | Positive_software | 2.4.2_rc2 (including) | 2.4.2_rc2 (including) |
H-sphere | Positive_software | 2.4.3 (including) | 2.4.3 (including) |
H-sphere | Positive_software | 2.4.3_beta_1 (including) | 2.4.3_beta_1 (including) |
H-sphere | Positive_software | 2.4.3_beta_2 (including) | 2.4.3_beta_2 (including) |
H-sphere | Positive_software | 2.4.3_patch_1 (including) | 2.4.3_patch_1 (including) |
H-sphere | Positive_software | 2.4.3_patch_2 (including) | 2.4.3_patch_2 (including) |
H-sphere | Positive_software | 2.4.3_patch_3 (including) | 2.4.3_patch_3 (including) |
H-sphere | Positive_software | 2.4.3_patch_4 (including) | 2.4.3_patch_4 (including) |
H-sphere | Positive_software | 2.4.3_patch_5 (including) | 2.4.3_patch_5 (including) |
H-sphere | Positive_software | 2.4.3_patch_6 (including) | 2.4.3_patch_6 (including) |
H-sphere | Positive_software | 2.4.3_patch_7 (including) | 2.4.3_patch_7 (including) |
H-sphere | Positive_software | 2.4.3_patch_8 (including) | 2.4.3_patch_8 (including) |
H-sphere | Positive_software | 2.4.3_rc1 (including) | 2.4.3_rc1 (including) |
H-sphere | Positive_software | 2.4.3_rc2 (including) | 2.4.3_rc2 (including) |