PT-2007-6762 · Blue Coat · Blue Coat Proxysg

Published

2007-11-03

·

Updated

2018-10-26

·

CVE-2007-5796

CVSS v2.0

4.3

Medium

VectorAV:N/AC:M/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Blue Coat ProxySG versions prior to 4.2.6.1 Blue Coat ProxySG versions 5.x prior to 5.2.2.5
Description A cross-site scripting (XSS) issue exists in the management console, allowing remote attackers to inject arbitrary web script or HTML by modifying the URL used for loading Certificate Revocation Lists.
Recommendations For versions prior to 4.2.6.1, update to version 4.2.6.1 or later. For versions 5.x prior to 5.2.2.5, update to version 5.2.2.5 or later.

Exploit

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2007-5796

Affected Products

Blue Coat Proxysg