Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site scripting (XSS) vulnerability in the Server component in CA Host-Based Intrusion Prevention System (HIPS) before 8.0.0.93 allows remote attackers to inject arbitrary web script or HTML via requests that are written to logs for later display in the log viewer.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
CA基于主机入侵检测系统服务器HTML代码注入漏洞
Vulnerability Description
CA基于主机入侵检测系统(HIPS)结合了独立式防火墙、入侵检测和防御能力,提供了主动的集中式威胁防御功能。 CA HIPS的服务器端安装允许用户使用浏览器查看日志中所显示的原始请求数据,远程攻击者可以通过提交恶意请求导致在日志中注入恶意HTML脚本代码并在用户浏览器中执行。
CVSS Information
N/A
Vulnerability Type
N/A