The Active Content Transformation functionality in Blue Coat ProxySG before SGOS 4.3.4.2, 5.x before SGOS 5.4.5.1, 5.5 before SGOS 5.5.4.1, and 6.x before SGOS 6.1.2.1 allows remote attackers to bypass JavaScript detection via HTML entities.
References
Link | Resource |
---|---|
https://kb.bluecoat.com/index?page=content&id=SA48 |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2012-08-26 12:55
Updated : 2012-08-26 21:00
NVD link : CVE-2010-5190
Mitre link : CVE-2010-5190
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
bluecoat
- proxysg_sg210-25
- sgos
- proxysg_sg810-5
- proxysg_sg510-5
- proxysg_sg9000-10
- proxysg_sg9000-20
- proxysg_sg210-5
- proxysg_sg9000-5
- proxysg_sg810-25
- proxysg
- proxysg_sg510-10
- proxysg_sg810-10
- proxysg_sg510-20
- proxysg_sg810-20
- proxysg_sg210-10
- proxysg_sg510-25