Multiple cross-site scripting (XSS) vulnerabilities in multiple Hitachi Web Server, uCosminexus, and Cosminexus products before 20070124 allow remote attackers to inject arbitrary web script or HTML via (1) HTTP Expect headers or (2) image maps.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 00:26
Type | Values Removed | Values Added |
---|---|---|
References | () http://osvdb.org/32997 - | |
References | () http://osvdb.org/32998 - | |
References | () http://secunia.com/advisories/23843 - | |
References | () http://www.hitachi-support.com/security_e/vuls_e/HS06-022_e/01-e.html - Patch, Vendor Advisory | |
References | () http://www.vupen.com/english/advisories/2007/0326 - |
Information
Published : 2007-01-26 00:28
Updated : 2024-11-21 00:26
NVD link : CVE-2007-0514
Mitre link : CVE-2007-0514
CVE.ORG link : CVE-2007-0514
JSON object : View
Products Affected
hitachi
- cosminexus_developer_version_5
- cosminexus_application_server_version_5
- cosminexus_server_-_standard_edition_version_4
- cosminexus_developer_standard_version_6
- cosminexus_server_-_web_edition
- cosminexus_developer_professional_version_6
- cosminexus_server_-_standard_edition
- cosminexus_application_server
- ucosminexus_application_server_enterprise
- cosminexus_server_-_web_edition_version_4
- ucosminexus_developer_standard
- ucosminexus_service_architect
- ucosminexus_application_server_smart_edition
- hitachi_web_server
- ucosminexus_application_server_standard
- ucosminexus_developer_light
- cosminexus_server_-_enterprise_edition
- ucosminexus_service_platform
- cosminexus_developer_light_version_6
CWE