Cross-site Scripting Vulnerability in HPE 3PAR Service Processor
CVE-2019-5398
5.4MEDIUM
What is CVE-2019-5398?
A remote cross-site scripting vulnerability exists in the HPE 3PAR Service Processor, which can be exploited by attackers to execute arbitrary scripts in the context of the user's session. This can lead to unauthorized actions being performed on behalf of the victim, compromising the security of the organization. Affected users should upgrade to version 5.0.5.1 or later to mitigate this risk.
Affected Version(s)
HPE 3PAR Service Processor prior to 5.0.5.1