CVE-2017-8953

Description

A Remote Cross-Site Scripting (XSS) vulnerability in HPE LoadRunner v12.53 and earlier and HPE Performance Center version v12.53 and earlier was found.

Risk Information

Base Score
5.4
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
EPSS Score
Exploitation Probability
0.309

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2007-6530,CVE-2011-2328,CVE-2017-5789,CVE-2017-8953 are affected in HP LoadRunner 12.50-p3Windows
Multiple Vulnerabilities affected in loadrunner 12.50-p3NCM
Multiple Vulnerabilities affected in loadrunner 11.50NCM
Multiple Vulnerabilities affected in loadrunner 11.0.0.0NCM
Multiple Vulnerabilities affected in loadrunner 9.51NCM
Multiple Vulnerabilities affected in loadrunner 9.50.0NCM
Vulnerabilities CVE-2013-4839 ,CVE-2013-6213 ,CVE-2015-5426 ,CVE-2017-5789 ,CVE-2017-8953 are affected in loadrunner 11.51NCM
Vulnerabilities CVE-2016-4359 ,CVE-2016-4360 ,CVE-2016-4361 ,CVE-2017-5789 ,CVE-2017-8953 are affected in loadrunner 11.52-p3NCM
Vulnerabilities CVE-2016-4361 ,CVE-2016-4384 ,CVE-2017-5789 ,CVE-2017-8953 are affected in loadrunner 12.02-p2NCM
Vulnerabilities CVE-2016-4361 ,CVE-2017-5789 ,CVE-2017-8953 are affected in loadrunner 12.01-p3NCM
Vulnerabilities CVE-2016-4361 ,CVE-2017-5789 ,CVE-2017-8953 are affected in loadrunner 12.00-p1NCM
Vulnerabilities CVE-2017-14359 ,CVE-2017-5789 ,CVE-2017-8953 are affected in performance_center 12.20-p2NCM
Vulnerabilities CVE-2017-5789 ,CVE-2017-8953 are affected in loadrunner 11.52NCM
Vulnerabilities CVE-2017-5789 ,CVE-2017-8953 are affected in loadrunner 9.0.0NCM
Vulnerabilities CVE-2017-8953 are affected in loadrunner 12.50-p1NCM
Vulnerabilities CVE-2017-8953 are affected in loadrunner 9.52NCM
Vulnerabilities CVE-2017-8953 are affected in performance_center 12.50-p1NCM
Vulnerabilities CVE-2017-8953 are affected in performance_center 12.01-p3NCM
Vulnerabilities CVE-2017-8953 are affected in performance_center 12.00-p1NCM
Vulnerabilities CVE-2017-8953 are affected in performance_center 11.52-p3NCM
Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability (CVE-2017-8953)NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234