>> HP System Management Homepage Cross-Site Scripting Vulnerability
Title : HP System Management Homepage Cross-Site Scripting Vulnerability VUPEN ID : VUPEN/ADV-2008-1990 CVE ID : CVE-2008-1663 CWE ID : CWE-79
Rated as : Low Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2008-07-02
Technical Description
A vulnerability has been identified in HP System Management Homepage (SMH), which could be exploited to conduct cross-site scripting attacks. This issue is caused by an unspecified input validation error when processing user-supplied data, which could be exploited by attackers to cause arbitrary scripting code to be executed by the user's browser in the security context of an affected site.