[2/5] Hitachi Web Server Multiple Vulnerabilities
:Some vulnerabilities have been reported in the Hitachi Web Server, which can be exploited by malicious people to bypass certain security restrictions or conduct cross-site scripting attacks.1) An error exists within the handling of SSL requests. This can be exploited to trick a vulnerable server into accepting a forged signature.2) An error exists in the Hitachi Web Server when generating server-status pages for potentially malicious scripts . This can be exploited to execute arbitrary HTML and script code in a user’s browser session in context of an affected site.See the vendor advisories for a list of affected versions.Solution:Updates are available for some versions. See the vendor’s advisories for details or contact a Hitachi support service representative.Provided and/or discovered by:Reported by the vendor.Original Advisory:http://www.hitachi-support.com/security_e/vuls_e/HS07-034_e/index-e.htmlhttp://www.hitachi-support.com/security_e/vuls_e/HS07-035_e/index-e.html
Original post by Pankaj
Posted in Advisories - Exploits |
| [2/5] Hitachi Web Server Multiple Vulnerabilities