VulnerabilityModified
CVE-2005-0641
Cross-site scripting (XSS) vulnerability in the Reporter for Computer Associates (CA) Unicenter Asset Management (UAM) 4.0 allows remote attackers to inject arbitrary HTML or web script via the (1) name or (2) description in a report template.
MEDIUM 4.3EPSS 1.32%
Does this matter?
Lower severity and a low EPSS score (1.32%). Track it; it rarely justifies an emergency change on its own.
Description
Cross-site scripting (XSS) vulnerability in the Reporter for Computer Associates (CA) Unicenter Asset Management (UAM) 4.0 allows remote attackers to inject arbitrary HTML or web script via the (1) name or (2) description in a report template.
- CVSS 2.0
- 4.3 MEDIUMAV:N/AC:M/Au:N/C:N/I:P/A:N
- EPSS
- 1.32% probability · 69th percentile
- CISA KEV
- Not listed
- Affected
- broadcom/unicenter asset management
- Source
- cve@mitre.org
References
- http://secunia.com/advisories/14454Patch, Vendor Advisory
- http://supportconnect.ca.com/sc/solcenter/solresults.jsp?aparno=Qo64323Vendor Advisory
- http://secunia.com/advisories/14454Patch, Vendor Advisory
- http://supportconnect.ca.com/sc/solcenter/solresults.jsp?aparno=Qo64323Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.