[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

251782

 
 

909

 
 

196543

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Cross-Site Scripting Vulnerability

ID: oval:org.mitre.oval:def:5771Date: (C)2009-04-14   (M)2022-10-10
Class: VULNERABILITYFamily: windows




Cross-site scripting (XSS) vulnerability in cookieauth.dll in the HTML forms authentication component in Microsoft Forefront Threat Management Gateway, Medium Business Edition (TMG MBE); and Internet Security and Acceleration (ISA) Server 2006, 2006 Supportability Update, and 2006 SP1; allows remote attackers to inject arbitrary web script or HTML via "authentication input" to this component, aka "Cross-Site Scripting Vulnerability."

Platform:
Microsoft Windows 2000
Microsoft Windows Server 2003
Product:
Microsoft Forefront Threat Management Gateway
Microsoft Internet Security and Acceleration Server 2006
Reference:
CVE-2009-0237
CVE    1
CVE-2009-0237
CPE    1
cpe:/a:microsoft:isa_server:2006

© SecPod Technologies