Vulnerability Description
A Remote Cross-Site Scripting vulnerability in HPE Project and Portfolio Management (PPM) version v9.30, v9.31, v9.32, v9.40 was found.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Microfocus | Project And Portfolio Management | 9.3.0 |
Related Weaknesses (CWE)
References
- http://www.securityfocus.com/bid/100087Third Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1039065Third Party AdvisoryVDB Entry
- https://support.hpe.com/hpsc/doc/public/display?docId=emr_na-hpesbgn03766en_usVendor Advisory
- http://www.securityfocus.com/bid/100087Third Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1039065Third Party AdvisoryVDB Entry
- https://support.hpe.com/hpsc/doc/public/display?docId=emr_na-hpesbgn03766en_usVendor Advisory
FAQ
What is CVE-2017-8993?
CVE-2017-8993 is a vulnerability with a CVSS score of 5.4 (MEDIUM). A Remote Cross-Site Scripting vulnerability in HPE Project and Portfolio Management (PPM) version v9.30, v9.31, v9.32, v9.40 was found.
How severe is CVE-2017-8993?
CVE-2017-8993 has been rated MEDIUM with a CVSS base score of 5.4/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2017-8993?
Check the references section above for vendor advisories and patch information. Affected products include: Microfocus Project And Portfolio Management.