PT-2010-2392 · Ca · Ca Ehealth Performance Manager

Publicado

2010-02-24

·

Atualizado

2018-10-10

·

CVE-2010-0640

CVSS v2.0

2.6

Baixa

VetorAV:N/AC:H/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions CA eHealth Performance Manager versions 6.0.x through 6.2.x
Description A cross-site scripting (XSS) issue exists, allowing remote attackers to inject arbitrary web script or HTML via a crafted request when malicious HTML detection is disabled.
Recommendations For CA eHealth Performance Manager versions 6.0.x through 6.2.x, enable malicious HTML detection to prevent exploitation of this issue.

Correção

XSS

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2010-0640

Produtos afetados

Ca Ehealth Performance Manager