← Volver a CVEs
CVE-2010-3291
N/ADescripcion
Cross-site scripting (XSS) vulnerability in HP AssetCenter 5.0x through AC_5.03, and AssetManager 5.1x through AM_5.12 and 5.2x through AM_5.22, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Detalles CVE
Puntuacion CVSS v3.1N/A
Publicado10/21/2010
Ultima modificacion4/29/2026
Fuentenvd
Avistamientos honeypot0
Productos afectados
hp:assetcenterhp:assetmanager
Debilidades (CWE)
CWE-79
Referencias
http://secunia.com/advisories/41901(hp-security-alert@hp.com)
http://www.itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02535850(hp-security-alert@hp.com)
http://www.securityfocus.com/bid/44261(hp-security-alert@hp.com)
http://www.securitytracker.com/id?1024615(hp-security-alert@hp.com)
http://www.vupen.com/english/advisories/2010/2737(hp-security-alert@hp.com)
http://secunia.com/advisories/41901(af854a3a-2127-422b-91ae-364da2661108)
http://www.itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02535850(af854a3a-2127-422b-91ae-364da2661108)
http://www.securityfocus.com/bid/44261(af854a3a-2127-422b-91ae-364da2661108)
http://www.securitytracker.com/id?1024615(af854a3a-2127-422b-91ae-364da2661108)
http://www.vupen.com/english/advisories/2010/2737(af854a3a-2127-422b-91ae-364da2661108)
Correlaciones IOC
Sin correlaciones registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.