Multiple Cross-Site Scripting Vulnerabilities in HP Project and Portfolio Management Center
CVE-2010-0452
Currently unrated
Key Information:
- Vendor
HP
- Vendor
- CVE Published:
- 29 March 2010
What is CVE-2010-0452?
The HP Project and Portfolio Management Center contains multiple cross-site scripting (XSS) vulnerabilities that could allow remote attackers to inject arbitrary web scripts or HTML through various unspecified vectors. Due to this flaw, an attacker may exploit user input to execute harmful scripts in the context of the user’s session, potentially leading to unauthorized actions and data exposure.