Release date: 2012-04-20
Updated on: 2012-04-23
Affected Systems:
Hitachi JP1/IT Desktop Management-Manager 09-50-01 (Windows)
Hitachi JP1/IT Desktop Management-Manager 09-50 (Windows)
Unaffected system:
Hitachi JP1/IT Desktop Management-Manager 09-50-02 (Windows)
Description:
--------------------------------------------------------------------------------
Bugtraq id: 53175
Hitachi JP1/IT Desktop Management-Manager is used to centrally manage all IT assets.
Hitachi JP1/IT Desktop Management has the vulnerability of returning incorrectly filtered input to the user, which can be exploited to execute arbitrary HTML and script code in the user's browser session, cause a crash.
<* Source: Hitachi
Link: http://secunia.com/advisories/48843/
Http://www.hitachi.co.jp/Prod/comp/soft1/security/info/vuls/HS12-011/index.html
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Hitachi
-------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.hitachi.co.jp