Vulnerability Name: | CVE-2006-3579 (CCN-27831) | ||||||||
Assigned: | 2006-07-12 | ||||||||
Published: | 2006-07-12 | ||||||||
Updated: | 2008-09-05 | ||||||||
Summary: | Cross-site scripting (XSS) vulnerability in Fujitsu ServerView 2.50 up to 3.60L98 and 4.10L11 up to 4.11L81 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. This vulnerability is addressed in the following product releases: Fujitsu, ServerView, 3.60L99 Fujitsu, ServerView, 4.20L11B | ||||||||
CVSS v3 Severity: | 5.6 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||
CVSS v2 Severity: | 4.3 Medium (CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N) 3.2 Low (Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N/E:U/RL:OF/RC:C)
3.8 Low (CCN Temporal CVSS v2 Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-79 | ||||||||
Vulnerability Consequences: | Gain Access | ||||||||
References: | Source: MITRE Type: CNA CVE-2006-3579 Source: JVN Type: Patch JVN#73368472 Source: JVN Type: Patch JVN#76686161 Source: CCN Type: SA21011 ServerView Cross-Site Scripting and Directory Traversal Source: SECUNIA Type: Patch, Vendor Advisory 21011 Source: CONFIRM Type: Patch http://software.fujitsu.com/jp/security/vulnerabilities/jvn-73368472-76686161.html Source: CCN Type: Fujitsu Siemens Web site PRIMERGY ServerView Suite Source: OSVDB Type: UNKNOWN 27105 Source: CCN Type: OSVDB ID: 27105 Fujitsu ServerView Unspecified XSS Source: BID Type: UNKNOWN 18950 Source: CCN Type: BID-18950 ServerView Multiple Unspecified Input Validation Vulnerabilities Source: XF Type: UNKNOWN serverview-unspecified-xss(27831) | ||||||||
Vulnerable Configuration: | Configuration 1:![]() | ||||||||
BACK |