HP OpenCall Media Platform Multiple...

- AV AC AU C I A
发布: 2017-03-20
修订: 2025-04-13

HP OpenCall Media Platform is prone to multiple cross-site scripting vulnerabilities and a remote file-include vulnerability because it fails to sufficiently sanitize user-supplied input. An attacker can exploit these issues to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site or of the webserver process. This may allow the attacker to steal cookie-based authentication credentials or obtain potentially sensitive information; other attacks are also possible. HP OpenCall Media Platform 3.x versions prior to 3.4.2 RP201 and 4.x versions prior to 4.4.7 RP702 are vulnerable.

0%
当前有1条漏洞利用/PoC
当前有0条受影响产品信息