Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-1503 (BIG-IP)

BugsAlert Home > CVE-2008-1503 (BIG-IP)
 
 

Cross-site scripting (XSS) vulnerability in the web management interface in F5 BIG-IP 9.4.3 allows remote attackers to inject arbitrary web script or HTML via (1) the name of a node object, or the (2) sysContact or (3) sysLocation SNMP configuration field, aka "Audit Log XSS." NOTE: these issues might be resultant from cross-site request forgery (CSRF) vulnerabilities.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-1503

Learn more about CVE-2008-1503 (BIG-IP)
 
Tags: cve-2008-1503 big-ip

Related Items

      FrSIRT - iPei "pg" Parameter Handling Cross Site Scripting Vulnerability

      CVE-2008-4000 (enterpriseone, jd_edwards_enterpriseone, peoplesoft_enterprise, peoplesoft_people...)

      CVE-2008-2347 (mypicgallery)

      CVE-2007-6273 (Global VPN Client)

      CVE-2008-1484 (PunBB)

      FrSIRT - Libxml2 XML Data Processing Two Integer Overflow Vulnerabilities

      Bugtraq: [SECURITY] [DSA 1663-1] New net-snmp packages fix several vulnerabilities

 

Pixel