Cross-site scripting (XSS) vulnerability in the help page in Juniper Secure Access (SA) with IVE OS before 7.1r13, 7.2.x before 7.2r7, and 7.3.x before 7.3r2 allows remote attackers to inject arbitrary web script or HTML via the WWHSearchWordsText parameter.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Juniper
Subscribe
|
Fips Secure Access 4000
Subscribe
Fips Secure Access 4500
Subscribe
Fips Secure Access 6000
Subscribe
Fips Secure Access 6500
Subscribe
Ive Os
Subscribe
Mag2600 Gateway
Subscribe
Mag4610 Gateway
Subscribe
Mag6610 Gateway
Subscribe
Mag6611 Gateway
Subscribe
Secure Access 2000
Subscribe
Secure Access 2500
Subscribe
Secure Access 4000
Subscribe
Secure Access 4500
Subscribe
Secure Access 6000
Subscribe
Secure Access 6500
Subscribe
Secure Access 700
Subscribe
Secure Access Virtual Appliance
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2012-5379 | Cross-site scripting (XSS) vulnerability in the help page in Juniper Secure Access (SA) with IVE OS before 7.1r13, 7.2.x before 7.2r7, and 7.3.x before 7.3r2 allows remote attackers to inject arbitrary web script or HTML via the WWHSearchWordsText parameter. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-09-16T22:36:07.051Z
Reserved: 2012-10-24T00:00:00.000Z
Link: CVE-2012-5460
No data.
Status : Deferred
Published: 2013-08-01T13:32:35.103
Modified: 2025-04-11T00:51:21.963
Link: CVE-2012-5460
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD