Multiple cross-site scripting (XSS) vulnerabilities in Hitachi Cosminexus Collaboration Portal 06-00 through 06-10-/B, Groupmax Collaboration Portal 07-00 through 07-10-/B, and Groupmax Collaboration Web Client 07-00 through 07-10-/A allow remote attackers to inject arbitrary web script or HTML via the (1) Schedule and (2) Calendar components.
Link | Tags |
---|---|
http://securitytracker.com/alerts/2005/Nov/1015241.html | patch vdb entry |
http://www.osvdb.org/20969 | vdb entry |
http://secunia.com/advisories/17634/ | patch vendor advisory third party advisory |
http://www.securityfocus.com/bid/15498 | vdb entry |
http://securitytracker.com/alerts/2005/Nov/1015242.html | patch vdb entry |
http://www.osvdb.org/22126 | vdb entry |
http://www.hitachi-support.com/security_e/vuls_e/HS05-023_e/01-e.html | patch vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/23197 | vdb entry |