CVE-2012-4983 Information

Description

Multiple cross-site scripting (XSS) vulnerabilities on the Forescout CounterACT NAC device before 7.0 allow remote attackers to inject arbitrary web script or HTML via (1) the a parameter to assets/login or (2) the query parameter to assets/rangesearch.

Reference

http://www.reactionpenetrationtesting.co.uk/forescout-nac-xss.html http://www.securityfocus.com/bid/56688

Share on: