CVE-2018-6492 Information
Feb 14, 2021
cve
Description
Persistent Cross-Site Scripting and non-persistent HTML Injection in HP Network Operations Management Ultimate version 2017.07 2017.11 2018.02 and in Network Automation version 10.00 10.10 10.11 10.20 10.30 10.40 10.50. This vulnerability could be remotely exploited to allow persistent cross-site scripting and non-persistent HTML Injection.
CVSS Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Reference
http://www.securityfocus.com/bid/104131 http://www.securitytracker.com/id/1040900 https://softwaresupport.softwaregrp.com/document/-/facetsearch/document/KM03158014
Attack Complexity
LOW
Privileges Required
NONE
User Interaction Required
NONE
Scope
REQUIRED
Confidentiality Impact
CHANGED
Integrity Impact
LOW
Availability Impact
LOW
Base Score
NONE
Base Severity
6.1
Share on: