XSS Vulnerability in Hitachi JP1/HiCommand Device Manager and Related Products
CVE-2007-3623

Currently unrated

Summary

The Hitachi JP1/HiCommand Device Manager and several of its related products are susceptible to a cross-site scripting vulnerability due to improper handling of the Expect HTTP header. This flaw allows remote attackers to inject arbitrary web scripts or HTML into web pages viewed by users, potentially compromising sensitive user information and allowing a range of malicious activities.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.