A potential DOM-based Cross Site Scripting security vulnerability has been identified in HPE StoreOnce. The vulnerability could be remotely exploited to cause an elevation of privilege leading to partial impact to confidentiality, availability, and integrity. HPE has made the following software update - HPE StoreOnce 4.3.0, to resolve the vulnerability in HPE StoreOnce.
References
Link | Resource |
---|---|
https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst04176en_us | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: hpe
Published: 2021-09-27T14:01:37
Updated: 2021-09-27T14:01:37
Reserved: 2021-02-02T00:00:00
Link: CVE-2021-26587
JSON object: View
NVD Information
Status : Analyzed
Published: 2021-09-27T15:15:07.513
Modified: 2021-10-05T18:28:33.690
Link: CVE-2021-26587
JSON object: View
Redhat Information
No data.
CWE