 |
|
|
|
F5 FirePass 4100 crossite scripting updated since 14.11.2007 | | Published: |  | 30.11.2007 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 8340 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | SSL VPN download_plugin.php3, page backurl parameter, my.logon.php3, my.activation.php3 crossite scripting. |
| Affected: |  | F5 : FirePass 4100 | | |  | F5 : FirePass 5.4 | | |  | F5 : FirePass 5.5 | | |  | F5 : FirePass 6.0 |
| Original document |  | research_(at)_procheckup.com, PR07-15: Cross-site Scripting (XSS) / HTML injection on F5 FirePass 4100 SSL VPN 'my.logon.php3' server-side script (30.11.2007) |
| |  | research_(at)_procheckup.com, PR07-14: Cross-site Scripting (XSS) / HTML injection on F5 FirePass 4100 SSL VPN 'my.activation.php3' server-side script (30.11.2007) |
| |  | research_(at)_procheckup.com, PR07-13: Cross-site Scripting / HTML injection on F5 FirePass 4100 SSL VPN 'download_plugin.php3' server-side script (14.11.2007) |
| Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl) | | Published: |  | 30.11.2007 | | Source: |  | | | SecurityVulns ID: |  | 8391 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks, etc.
Cryptographp: XSS. |
| |
|
| |