ID

VAR-201003-0531


TITLE

uCosminexus Portal Framework Cross-Site Scripting Vulnerability

Trust: 0.8

sources: JVNDB: JVNDB-2010-001088

DESCRIPTION

uCosminexus Portal Framework has a cross-site scripting vulnerability.A remote attacker could make users of affected systems unknowingly execute malicious scripts.

Trust: 0.8

sources: JVNDB: JVNDB-2010-001088

AFFECTED PRODUCTS

vendor:hitachimodel:cosminexus collaboration portalscope: - version: -

Trust: 0.8

vendor:hitachimodel:cosminexus collaboration portalscope:eqversion:- forum/file sharing

Trust: 0.8

vendor:hitachimodel:cosminexus portal frameworkscope: - version: -

Trust: 0.8

vendor:hitachimodel:cosminexus portal frameworkscope:eqversion:- light

Trust: 0.8

vendor:hitachimodel:electronic form workflowscope:eqversion:developer set

Trust: 0.8

vendor:hitachimodel:electronic form workflowscope:eqversion:set

Trust: 0.8

vendor:hitachimodel:groupmax collaboration portalscope: - version: -

Trust: 0.8

vendor:hitachimodel:groupmax collaboration web clientscope:eqversion:- forum/file sharing

Trust: 0.8

vendor:hitachimodel:groupmax collaboration web client - mail/schedulescope: - version: -

Trust: 0.8

vendor:hitachimodel:jp1/integrated managementscope:eqversion:- service support

Trust: 0.8

vendor:hitachimodel:ucosminexus collaboration portalscope: - version: -

Trust: 0.8

vendor:hitachimodel:ucosminexus collaboration portalscope:eqversion:- forum/file sharing

Trust: 0.8

vendor:hitachimodel:ucosminexus content managerscope: - version: -

Trust: 0.8

vendor:hitachimodel:ucosminexus electronic form workflowscope:eqversion:quickstart edition

Trust: 0.8

vendor:hitachimodel:ucosminexus electronic form workflowscope:eqversion:quickstart edition with hirdb

Trust: 0.8

vendor:hitachimodel:ucosminexus navigationscope:eqversion:developer

Trust: 0.8

vendor:hitachimodel:ucosminexus navigationscope:eqversion:platform

Trust: 0.8

vendor:hitachimodel:ucosminexus navigationscope:eqversion:platform - authoring license

Trust: 0.8

vendor:hitachimodel:ucosminexus navigationscope:eqversion:platform - user license

Trust: 0.8

vendor:hitachimodel:ucosminexus portal frameworkscope: - version: -

Trust: 0.8

vendor:hitachimodel:ucosminexus portal frameworkscope:eqversion:- light

Trust: 0.8

sources: JVNDB: JVNDB-2010-001088

CVSS

SEVERITY

CVSSV2

CVSSV3

IPA: JVNDB-2010-001088
value: MEDIUM

Trust: 0.8

IPA: JVNDB-2010-001088
severity: MEDIUM
baseScore: 5.0
vectorString: AV:N/AC:L/AU:N/C:N/I:P/A:N
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: NONE
integrityImpact: PARTIAL
availabilityImpact: NONE
exploitabilityScore: NONE
impactScore: NONE
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.8

sources: JVNDB: JVNDB-2010-001088

PROBLEMTYPE DATA

problemtype:CWE-79

Trust: 0.8

sources: JVNDB: JVNDB-2010-001088

CONFIGURATIONS

sources: JVNDB: JVNDB-2010-001088

PATCH

title:HS10-001url:http://www.hitachi.co.jp/prod/comp/soft1/global/security/info/vuls/hs10-001/index.html

Trust: 0.8

sources: JVNDB: JVNDB-2010-001088

EXTERNAL IDS

db:JVNDBid:JVNDB-2010-001088

Trust: 0.8

sources: JVNDB: JVNDB-2010-001088

SOURCES

db:JVNDBid:JVNDB-2010-001088

LAST UPDATE DATE

2022-05-04T10:20:12.331000+00:00


SOURCES UPDATE DATE

db:JVNDBid:JVNDB-2010-001088date:2010-03-03T00:00:00

SOURCES RELEASE DATE

db:JVNDBid:JVNDB-2010-001088date:2010-03-03T00:00:00