cvelist/2009/2xxx/CVE-2009-2119.json
2019-03-18 06:54:17 +00:00

107 lines
3.6 KiB
JSON

{
"CVE_data_meta": {
"ASSIGNER": "cve@mitre.org",
"ID": "CVE-2009-2119",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"product": {
"product_data": [
{
"product_name": "n/a",
"version": {
"version_data": [
{
"version_value": "n/a"
}
]
}
}
]
},
"vendor_name": "n/a"
}
]
}
},
"data_format": "MITRE",
"data_type": "CVE",
"data_version": "4.0",
"description": {
"description_data": [
{
"lang": "eng",
"value": "Cross-site scripting (XSS) vulnerability in the login interface (my.logon.php3) in F5 FirePass SSL VPN 5.5 through 5.5.2 and 6.0 through 6.0.3 allows remote attackers to inject arbitrary web script or HTML via a base64-encoded xcho parameter."
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "n/a"
}
]
}
]
},
"references": {
"reference_data": [
{
"name": "35418",
"refsource": "SECUNIA",
"url": "http://secunia.com/advisories/35418"
},
{
"name": "35426",
"refsource": "SECUNIA",
"url": "http://secunia.com/advisories/35426"
},
{
"name": "https://www.fox-it.com/nl/nieuws-en-events/nieuws/laatste-nieuws/nieuwsartikel/f5-firepass-cross-site-scripting-vulnerability/106",
"refsource": "MISC",
"url": "https://www.fox-it.com/nl/nieuws-en-events/nieuws/laatste-nieuws/nieuwsartikel/f5-firepass-cross-site-scripting-vulnerability/106"
},
{
"name": "55040",
"refsource": "OSVDB",
"url": "http://osvdb.org/55040"
},
{
"name": "https://www.fox-it.com/uploads/pdf/advisory_xss_f5_firepass.pdf",
"refsource": "MISC",
"url": "https://www.fox-it.com/uploads/pdf/advisory_xss_f5_firepass.pdf"
},
{
"name": "20090611 F5 FirePass Cross-Site Scripting vulnerability",
"refsource": "BUGTRAQ",
"url": "http://www.securityfocus.com/archive/1/504232/100/0/threaded"
},
{
"name": "35312",
"refsource": "BID",
"url": "http://www.securityfocus.com/bid/35312"
},
{
"name": "firepasssslvpn-unspecified-xss(51064)",
"refsource": "XF",
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/51064"
},
{
"name": "ADV-2009-1570",
"refsource": "VUPEN",
"url": "http://www.vupen.com/english/advisories/2009/1570"
},
{
"name": "1022387",
"refsource": "SECTRACK",
"url": "http://www.securitytracker.com/id?1022387"
}
]
}
}