CVE-2014-2644

Description

Cross-site scripting (XSS) vulnerability in HP Systems Insight Manager (SIM) before 7.4 allows remote attackers to inject arbitrary web script or HTML via unknown vectors.

Risk Information

Base Score
6.1
MODERATE
Vector
AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
EPSS Score
Exploitation Probability
0.669

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities affected in systems_insight_manager 5.0NCM
Multiple Vulnerabilities affected in systems_insight_manager 4.1-sp1NCM
Multiple Vulnerabilities affected in systems_insight_manager 4.1NCM
Multiple Vulnerabilities affected in systems_insight_manager 4.0NCM
Multiple Vulnerabilities affected in systems_insight_manager 6.1NCM
Multiple Vulnerabilities affected in systems_insight_manager 6.0NCM
Vulnerabilities CVE-2014-2643 ,CVE-2014-2644 ,CVE-2014-2645 are affected in systems_insight_manager 7.2NCM
Vulnerabilities CVE-2014-2643 ,CVE-2014-2644 ,CVE-2014-2645 are affected in systems_insight_manager 7.1NCM
Multiple Vulnerabilities affected in systems_insight_manager 7.0NCM
Multiple Vulnerabilities affected in systems_insight_manager 4.2-sp2NCM
Multiple Vulnerabilities affected in systems_insight_manager 4.2-sp1NCM
Multiple Vulnerabilities affected in systems_insight_manager 4.2NCM
Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability (CVE-2014-2644)NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234