ID

VAR-200603-0287


CVE

CVE-2006-1357


TITLE

F5 Firepass 4100 SSL VPN Cross-Site Scripting Vulnerability

Trust: 0.9

sources: BID: 17175 // CNNVD: CNNVD-200603-371

DESCRIPTION

Cross-site scripting (XSS) vulnerability in my.support.php3 in F5 Firepass 4100 SSL VPN 5.4.2 allows remote attackers to inject arbitrary web script or HTML via the s parameter. This issue is due to a failure in the application to properly sanitize user-supplied input. An attacker may leverage this issue to have arbitrary script code executed in the browser of an unsuspecting user in the context of the affected site. This may facilitate the theft of cookie-based authentication credentials as well as other attacks. Input passed to the "s" parameter in "my.support.php3" isn't properly sanitised before being returned to the user. Other versions may also be affected. SOLUTION: Do not follow links from untrusted sources or visit untrusted web sites while being logged in to the VPN. PROVIDED AND/OR DISCOVERED BY: ILION Research Labs ---------------------------------------------------------------------- About: This Advisory was delivered by Secunia as a free service to help everybody keeping their systems up to date against the latest vulnerabilities. Subscribe: http://secunia.com/secunia_security_advisories/ Definitions: (Criticality, Where etc.) http://secunia.com/about_secunia_advisories/ Please Note: Secunia recommends that you verify all advisories you receive by clicking the link. Secunia NEVER sends attached files with advisories. Secunia does not advise people to install third party patches, only use those supplied by the vendor. ---------------------------------------------------------------------- Unsubscribe: Secunia Security Advisories http://secunia.com/sec_adv_unsubscribe/?email=packet%40packetstormsecurity.org ----------------------------------------------------------------------

Trust: 1.35

sources: NVD: CVE-2006-1357 // BID: 17175 // VULHUB: VHN-17465 // PACKETSTORM: 44842

AFFECTED PRODUCTS

vendor:f5model:firepass 4100scope:eqversion:5.4.2

Trust: 1.6

vendor:f5model:firepassscope:eqversion:41005.4.2

Trust: 0.3

vendor:f5model:firepassscope: - version: -

Trust: 0.3

sources: BID: 17175 // CNNVD: CNNVD-200603-371 // NVD: CVE-2006-1357

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2006-1357
value: MEDIUM

Trust: 1.0

CNNVD: CNNVD-200603-371
value: MEDIUM

Trust: 0.6

VULHUB: VHN-17465
value: MEDIUM

Trust: 0.1

nvd@nist.gov: CVE-2006-1357
severity: MEDIUM
baseScore: 4.3
vectorString: AV:N/AC:M/AU:N/C:N/I:P/A:N
accessVector: NETWORK
accessComplexity: MEDIUM
authentication: NONE
confidentialityImpact: NONE
integrityImpact: PARTIAL
availabilityImpact: NONE
exploitabilityScore: 8.6
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.0

VULHUB: VHN-17465
severity: MEDIUM
baseScore: 4.3
vectorString: AV:N/AC:M/AU:N/C:N/I:P/A:N
accessVector: NETWORK
accessComplexity: MEDIUM
authentication: NONE
confidentialityImpact: NONE
integrityImpact: PARTIAL
availabilityImpact: NONE
exploitabilityScore: 8.6
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

sources: VULHUB: VHN-17465 // CNNVD: CNNVD-200603-371 // NVD: CVE-2006-1357

PROBLEMTYPE DATA

problemtype:NVD-CWE-Other

Trust: 1.0

sources: NVD: CVE-2006-1357

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-200603-371

TYPE

xss

Trust: 0.7

sources: PACKETSTORM: 44842 // CNNVD: CNNVD-200603-371

EXPLOIT AVAILABILITY

sources: VULHUB: VHN-17465

EXTERNAL IDS

db:BIDid:17175

Trust: 2.0

db:SECUNIAid:19337

Trust: 1.8

db:SREASONid:611

Trust: 1.7

db:NVDid:CVE-2006-1357

Trust: 1.7

db:VUPENid:ADV-2006-1036

Trust: 1.7

db:SECTRACKid:1015798

Trust: 1.7

db:XFid:25393

Trust: 0.6

db:BUGTRAQid:20060321 XSS IN FIREPASS 4100 SSL VPN V.5.4.2 (AND PROBABLY OTHERS)

Trust: 0.6

db:CNNVDid:CNNVD-200603-371

Trust: 0.6

db:SEEBUGid:SSVID-81061

Trust: 0.1

db:EXPLOIT-DBid:27452

Trust: 0.1

db:VULHUBid:VHN-17465

Trust: 0.1

db:PACKETSTORMid:44842

Trust: 0.1

sources: VULHUB: VHN-17465 // BID: 17175 // PACKETSTORM: 44842 // CNNVD: CNNVD-200603-371 // NVD: CVE-2006-1357

REFERENCES

url:http://www.securityfocus.com/bid/17175

Trust: 1.7

url:http://securitytracker.com/id?1015798

Trust: 1.7

url:http://secunia.com/advisories/19337

Trust: 1.7

url:http://securityreason.com/securityalert/611

Trust: 1.7

url:http://www.securityfocus.com/archive/1/428318/100/0/threaded

Trust: 1.1

url:http://www.vupen.com/english/advisories/2006/1036

Trust: 1.1

url:https://exchange.xforce.ibmcloud.com/vulnerabilities/25393

Trust: 1.1

url:http://www.securityfocus.com/archive/1/archive/1/428318/100/0/threaded

Trust: 0.6

url:http://xforce.iss.net/xforce/xfdb/25393

Trust: 0.6

url:http://www.frsirt.com/english/advisories/2006/1036

Trust: 0.6

url:http://www.f5.com/products/firepass/

Trust: 0.3

url:http://www.f5.com/

Trust: 0.3

url:/archive/1/428318

Trust: 0.3

url:http://secunia.com/advisories/19337/

Trust: 0.1

url:http://secunia.com/secunia_security_advisories/

Trust: 0.1

url:https://[victim]/my.support.php3?c=1&s=username[code]&lang=en&charset=iso-8859-1&uilangchar=en.iso-8859-1

Trust: 0.1

url:http://secunia.com/product/4695/

Trust: 0.1

url:http://secunia.com/sec_adv_unsubscribe/?email=packet%40packetstormsecurity.org

Trust: 0.1

url:http://secunia.com/about_secunia_advisories/

Trust: 0.1

sources: VULHUB: VHN-17465 // BID: 17175 // PACKETSTORM: 44842 // CNNVD: CNNVD-200603-371 // NVD: CVE-2006-1357

CREDITS

ILION Research Labs is credited with the discovery of this vulnerability.

Trust: 0.9

sources: BID: 17175 // CNNVD: CNNVD-200603-371

SOURCES

db:VULHUBid:VHN-17465
db:BIDid:17175
db:PACKETSTORMid:44842
db:CNNVDid:CNNVD-200603-371
db:NVDid:CVE-2006-1357

LAST UPDATE DATE

2024-11-23T22:32:29.524000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-17465date:2018-10-18T00:00:00
db:BIDid:17175date:2006-03-21T21:54:00
db:CNNVDid:CNNVD-200603-371date:2006-03-23T00:00:00
db:NVDid:CVE-2006-1357date:2024-11-21T00:08:39.810

SOURCES RELEASE DATE

db:VULHUBid:VHN-17465date:2006-03-22T00:00:00
db:BIDid:17175date:2006-03-21T00:00:00
db:PACKETSTORMid:44842date:2006-03-22T13:23:07
db:CNNVDid:CNNVD-200603-371date:2006-03-21T00:00:00
db:NVDid:CVE-2006-1357date:2006-03-22T02:02:00