CVE Vulnerabilities

CVE-2007-3623

Published: Jul 09, 2007 | Modified: Jul 29, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

Cross-site scripting (XSS) vulnerability in the Hitachi JP1/HiCommand Device Manager, Tiered Storage Manager, Replication Monitor, and GlobalLink Availability Manager before 20070528 allows remote attackers to inject arbitrary web script or HTML via the Expect HTTP header.

Affected Software

Name Vendor Start Version End Version
Jp1-hicommand_device_manager Hitachi 02_30 (including) 02_30 (including)
Jp1-hicommand_device_manager Hitachi 05_00 (including) 05_00 (including)
Jp1-hicommand_device_manager Hitachi 05_10 (including) 05_10 (including)
Jp1-hicommand_device_manager Hitachi 05_50 (including) 05_50 (including)
Jp1-hicommand_global_link_availability_manager Hitachi 05_00 (including) 05_00 (including)
Jp1-hicommand_replication_monitor Hitachi 04_00 (including) 04_00 (including)
Jp1-hicommand_replication_monitor Hitachi 05_00 (including) 05_00 (including)
Jp1-hicommand_replication_monitor Hitachi 05_50 (including) 05_50 (including)
Jp1-hicommand_tiered_storage_manager Hitachi 04_00 (including) 04_00 (including)
Jp1-hicommand_tiered_storage_manager Hitachi 04_30 (including) 04_30 (including)
Jp1-hicommand_tiered_storage_manager Hitachi 05_00 (including) 05_00 (including)
Jp1-hicommand_tiered_storage_manager Hitachi 05_50 (including) 05_50 (including)

References