Cross-site scripting (XSS) vulnerability in the WebVPN portal on Cisco Adaptive Security Appliances (ASA) 5580 series devices with software before 8.1(2) allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka Bug ID CSCsq78418.
References
Link | Resource |
---|---|
http://www.cisco.com/en/US/docs/security/asa/asa81/release/notes/asarn812.html | Patch |
Configurations
Information
Published : 2010-06-29 11:30
Updated : 2010-06-29 21:00
NVD link : CVE-2009-4910
Mitre link : CVE-2009-4910
JSON object : View
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Products Affected
cisco
- asa_5580