Vulnerabilities > IBM > Power Hardware Management Console > 7r7.2.0

DATE CVE VULNERABILITY TITLE RISK
2018-04-20 CVE-2014-0883 Cross-site Scripting vulnerability in IBM Power Hardware Management Console
IBM Power HMC 7.1.0 through 7.8.0 and 7.3.5 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
6.1
2012-08-17 CVE-2012-3296 Cross-Site Scripting vulnerability in IBM Power Hardware Management Console 7R7.1.0/7R7.2.0/7R7.3.0
Cross-site scripting (XSS) vulnerability in the Help link in the login panel in IBM Power Hardware Management Console (HMC) 7R7.1.0 before SP4, 7R7.2.0 before SP2, and 7R7.3.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
network
ibm CWE-79
4.3