CVE-2007-5472
CVE-2007-5472
Cross-site scripting (XSS) vulnerability in the Server component in CA Host-Based Intrusion Prevention System (HIPS) before 8.0.0.93 allows remote attackers to inject arbitrary web script or HTML via requests that are written to logs for later display in the log viewer.
Affected products
n/a · n/aWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
http://osvdb.org/37998http://secunia.com/advisories/27301http://securitytracker.com/id?1018839https://exchange.xforce.ibmcloud.com/vulnerabilities/37285http://supportconnectw.ca.com/public/cahips/infodocs/cahips-secnotice.asphttp://www.securityfocus.com/archive/1/482536/100/0/threadedhttp://www.securityfocus.com/bid/26134http://www.vupen.com/english/advisories/2007/3547