CVE-2007-5979

Cross-site scripting (XSS) vulnerability in download_plugin.php3 in F5 Firepass 4100 SSL VPN 5.4 through 5.5.2 and 6.0 through 6.0.1 allows remote attackers to inject arbitrary web script or HTML via the backurl parameter.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:h:f5:firepass_4100:5.4.4:*:*:*:*:*:*:*
cpe:2.3:h:f5:firepass_4100:5.4.5:*:*:*:*:*:*:*
cpe:2.3:h:f5:firepass_4100:6.0:*:*:*:*:*:*:*
cpe:2.3:h:f5:firepass_4100:6.0.1:*:*:*:*:*:*:*
cpe:2.3:h:f5:firepass_4100:5.4:*:*:*:*:*:*:*
cpe:2.3:h:f5:firepass_4100:5.4.8:*:*:*:*:*:*:*
cpe:2.3:h:f5:firepass_4100:5.4.9:*:*:*:*:*:*:*
cpe:2.3:h:f5:firepass_4100:5.4.6:*:*:*:*:*:*:*
cpe:2.3:h:f5:firepass_4100:5.4.7:*:*:*:*:*:*:*
cpe:2.3:h:f5:firepass_4100:5.4.1:*:*:*:*:*:*:*
cpe:2.3:h:f5:firepass_4100:5.4.2:*:*:*:*:*:*:*
cpe:2.3:h:f5:firepass_4100:5.4.3:*:*:*:*:*:*:*
cpe:2.3:h:f5:firepass_4100:5.5.1:*:*:*:*:*:*:*
cpe:2.3:h:f5:firepass_4100:5.5.0:*:*:*:*:*:*:*

Information

Published : 2007-11-14 16:46

Updated : 2018-10-15 14:48


NVD link : CVE-2007-5979

Mitre link : CVE-2007-5979


JSON object : View

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Advertisement

dedicated server usa

Products Affected

f5

  • firepass_4100