CVE-2010-4111

UnknownEPSS 1.80%

Last modified

CVE-2010-4111 is a vulnerability of currently unknown severity. Cross-site scripting (XSS) vulnerability in HP Insight Diagnostics Online Edition before 8.5.1.3712 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.. EPSS estimates a 1.80% chance of exploitation in the next 30 days.

Description

Cross-site scripting (XSS) vulnerability in HP Insight Diagnostics Online Edition before 8.5.1.3712 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Metrics

EPSS Probability
1.80%

75.7th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
HpInsight Diagnostics<= 8.5.0.3625
HpInsight Diagnostics6.3.0.878
HpInsight Diagnostics6.3.1.887
HpInsight Diagnostics7.0.0.1198
HpInsight Diagnostics7.0.1.1219
HpInsight Diagnostics7.4.0.1570
HpInsight Diagnostics7.5.0.1679
HpInsight Diagnostics7.5.5.1681
HpInsight Diagnostics7.6.0.1984
HpInsight Diagnostics7.7.0.2112
HpInsight Diagnostics7.8.0.2257
HpInsight Diagnostics7.9.0.2359
HpInsight Diagnostics7.9.1.2401
HpInsight Diagnostics8.0.0.2587
HpInsight Diagnostics8.1.0.2718
HpInsight Diagnostics8.1.1.2784
HpInsight Diagnostics8.1.5.2890
HpInsight Diagnostics8.2.0.3058
HpInsight Diagnostics8.2.5.3157
HpInsight Diagnostics8.3.0.3320
HpInsight Diagnostics8.4.0.3521
HpInsight Diagnostics<= 8.5.0-11
HpInsight Diagnostics6.3.0-15
HpInsight Diagnostics6.3.1-1
HpInsight Diagnostics7.0.0-30
HpInsight Diagnostics7.0.1-8
HpInsight Diagnostics7.4.0-11
HpInsight Diagnostics7.5.0-14
HpInsight Diagnostics7.5.5-1
HpInsight Diagnostics7.6.0-23
HpInsight Diagnostics7.7.0-142
HpInsight Diagnostics7.8.0-159
HpInsight Diagnostics7.9.0-105
HpInsight Diagnostics7.9.1-15
HpInsight Diagnostics8.0.0-210
HpInsight Diagnostics8.1.0-136
HpInsight Diagnostics8.1.1-206
HpInsight Diagnostics8.1.5-311
HpInsight Diagnostics8.3.0-14
HpInsight Diagnostics8.3.1-105
HpInsight Diagnostics8.4.0-18

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2010-4111?
Cross-site scripting (XSS) vulnerability in HP Insight Diagnostics Online Edition before 8.5.1.3712 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
How severe is CVE-2010-4111?
Severity scoring for CVE-2010-4111 is pending analysis. The EPSS model estimates a 1.80% probability of exploitation in the next 30 days.
How do I fix CVE-2010-4111?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2010-4111?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST