Vulnerability Description
A Remote Cross-Site Scripting (XSS) vulnerability in HPE LoadRunner v12.53 and earlier and HPE Performance Center version v12.53 and earlier was found.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Hp | Loadrunner | <= 12.53 |
| Hp | Performance Center | <= 12.53 |
Related Weaknesses (CWE)
References
- http://www.securitytracker.com/id/1038867Third Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1038868Third Party AdvisoryVDB Entry
- https://support.hpe.com/hpsc/doc/public/display?docId=emr_na-hpesbgn03764en_usVendor Advisory
- http://www.securitytracker.com/id/1038867Third Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1038868Third Party AdvisoryVDB Entry
- https://support.hpe.com/hpsc/doc/public/display?docId=emr_na-hpesbgn03764en_usVendor Advisory
FAQ
What is CVE-2017-8953?
CVE-2017-8953 is a vulnerability with a CVSS score of 5.4 (MEDIUM). A Remote Cross-Site Scripting (XSS) vulnerability in HPE LoadRunner v12.53 and earlier and HPE Performance Center version v12.53 and earlier was found.
How severe is CVE-2017-8953?
CVE-2017-8953 has been rated MEDIUM with a CVSS base score of 5.4/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2017-8953?
Check the references section above for vendor advisories and patch information. Affected products include: Hp Loadrunner, Hp Performance Center.