Cross-site scripting (XSS) vulnerability in the login CGI program in Aruba Mobility Controller 2.5.4.18 and earlier, and 2.4.8.6-FIPS and earlier FIPS versions, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Link | Tags |
---|---|
http://www.kb.cert.org/vuls/id/680449 | third party advisory us government resource |
http://www.securityfocus.com/bid/25059 | vdb entry |
http://www.vupen.com/english/advisories/2007/2646 | vdb entry |
http://secunia.com/advisories/26192 | third party advisory patch vendor advisory |
http://www.securitytracker.com/id?1018457 | vdb entry |
http://osvdb.org/36469 | vdb entry |
http://www.arubanetworks.com/support/alerts/aid-070907b.asc | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/35605 | vdb entry |