Unrated severityNVD Advisory· Published Dec 11, 2012· Updated Apr 29, 2026
CVE-2012-5956
CVE-2012-5956
Description
Multiple cross-site scripting (XSS) vulnerabilities in ManageEngine AssetExplorer 5.6 before service pack 5614 allow remote attackers to inject arbitrary web script or HTML via fields in XML asset data to discoveryServlet/WsDiscoveryServlet, as demonstrated by the DocRoot/Computer_Information/output element.
Affected products
1- cpe:2.3:a:zohocorp:manageengine_assetexplorer:*:5613:*:*:*:*:*:*Range: <=5.6
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- www.kb.cert.org/vuls/id/571068nvdThird Party AdvisoryUS Government Resource
- www.manageengine.com/products/asset-explorer/sp-readme.htmlnvdVendor Advisory
News mentions
0No linked articles in our index yet.