Vulnerability Description
A security vulnerability in HPE IceWall SSO Dfw and Dgfw (Domain Gateway Option) could be exploited remotely to cause a remote cross-site scripting (XSS). HPE has provided the following information to resolve this vulnerability in HPE IceWall SSO DFW and Dgfw: https://www.hpe.com/jp/icewall_patchaccess
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Hp | Icewall Sso Dfw | 11.0 |
| Hp | Icewall Sso Dgfw | 11.0 |
| Microsoft | Windows | - |
| Redhat | Enterprise Linux | - |
Related Weaknesses (CWE)
References
- https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpePatchVendor Advisory
- https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpePatchVendor Advisory
FAQ
What is CVE-2020-7140?
CVE-2020-7140 is a vulnerability with a CVSS score of 6.1 (MEDIUM). A security vulnerability in HPE IceWall SSO Dfw and Dgfw (Domain Gateway Option) could be exploited remotely to cause a remote cross-site scripting (XSS). HPE has provided the following information to...
How severe is CVE-2020-7140?
CVE-2020-7140 has been rated MEDIUM with a CVSS base score of 6.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-7140?
Check the references section above for vendor advisories and patch information. Affected products include: Hp Icewall Sso Dfw, Hp Icewall Sso Dgfw, Microsoft Windows, Redhat Enterprise Linux.