CVE-2015-1565

Cross-site scripting (XSS) vulnerability in the online help in Hitachi Device Manager, Tiered Storage Manager, Replication Manager, and Global Link Manager before 8.1.2-00, and Compute Systems Manager before 7.6.1-08 and 8.x before 8.1.2-00, as used in Hitachi Command Suite, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:hitachi:device_manager:*:*:*:*:*:*:*:*
cpe:2.3:a:hitachi:replication_manager:*:*:*:*:*:*:*:*
cpe:2.3:a:hitachi:tiered_storage_manager:*:*:*:*:*:*:*:*
OR cpe:2.3:o:microsoft:windows:*:*:*:*:*:*:*:*
cpe:2.3:o:novell:opensuse:*:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:*:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
OR cpe:2.3:a:hitachi:compute_systems_manager:*:*:*:*:*:*:*:*
cpe:2.3:a:hitachi:compute_systems_manager:8.0.0:*:*:*:*:*:*:*
cpe:2.3:a:hitachi:compute_systems_manager:8.1.0:*:*:*:*:*:*:*
cpe:2.3:a:hitachi:compute_systems_manager:8.1.1:*:*:*:*:*:*:*
cpe:2.3:a:hitachi:global_link_manager:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:*:*:*:*:*:*:*:*

History

21 Nov 2024, 02:25

Type Values Removed Values Added
References () http://secunia.com/advisories/62579 - () http://secunia.com/advisories/62579 -
References () http://secunia.com/advisories/62584 - () http://secunia.com/advisories/62584 -
References () http://www.hitachi.co.jp/Prod/comp/soft1/global/security/info/vuls/HS15-001/index.html - Vendor Advisory () http://www.hitachi.co.jp/Prod/comp/soft1/global/security/info/vuls/HS15-001/index.html - Vendor Advisory

Information

Published : 2015-02-09 17:59

Updated : 2024-11-21 02:25


NVD link : CVE-2015-1565

Mitre link : CVE-2015-1565

CVE.ORG link : CVE-2015-1565


JSON object : View

Products Affected

novell

  • opensuse

hitachi

  • device_manager
  • tiered_storage_manager
  • global_link_manager
  • compute_systems_manager
  • replication_manager

microsoft

  • windows

redhat

  • enterprise_linux
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')