Description
|
|
Two vulnerabilities were identified in multiple Hitachi products, which could be exploited to conduct cross site scripting or denial of service attacks.
The first flaw is due to input validation errors in the Collaboration Schedule and Collaboration Calendar when processing specially crafted parameters, which may be exploited by attackers to cause arbitrary scripting code to be executed by the user's browser.
The second issue is due to an unspecified error in the Collaboration Schedule that does not properly handle malformed requests, which could be exploited by attackers to cause a denial of service.
|