CVE-2008-5093

Cross-site scripting (XSS) vulnerability in the HTTP Protocol Stack (HTTPSTK) in Novell eDirectory before 8.8 SP3 allows remote attackers to inject arbitrary web script or HTML via unknown vectors.
Cross-site Scripting
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
4.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:N
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 67%
VendorProductVersion
novelledirectory
𝑥
≤ 8.8
novelledirectory
8.0
novelledirectory
8.5.12a:a
novelledirectory
8.5.27
novelledirectory
8.6.2
novelledirectory
8.7
novelledirectory
8.7.1
novelledirectory
8.7.1:sp1
novelledirectory
8.7.3
novelledirectory
8.7.3:sp1
novelledirectory
8.7.3:sp2
novelledirectory
8.7.3:sp3
novelledirectory
8.7.3:sp4
novelledirectory
8.7.3:sp5
novelledirectory
8.7.3:sp6
novelledirectory
8.7.3:sp7
novelledirectory
8.7.3:sp8
novelledirectory
8.7.3:sp9
novelledirectory
8.7.3.8
novelledirectory
8.7.3.8_presp9:_presp9
novelledirectory
8.7.3.9
novelledirectory
8.7.3.9
novelledirectory
8.7.3.9
novelledirectory
8.7.3.9
novelledirectory
8.7.3.9
novelledirectory
8.7.3.10
novelledirectory
8.8
novelledirectory
8.8
novelledirectory
8.8
novelledirectory
8.8
novelledirectory
8.8
novelledirectory
8.8.1
novelledirectory
8.8.1
novelledirectory
8.8.1
novelledirectory
8.8.1
novelledirectory
8.8.1
novelledirectory
8.8.2
novelledirectory
8.8.2
novelledirectory
8.8.2
novelledirectory
8.8.2
novelledirectory
8.8.2
𝑥
= Vulnerable software versions