ID

VAR-200904-0299


CVE

CVE-2009-1220


TITLE

Cisco Adaptive Security Appliances (ASA) Run on WebVPN of +webvpn+/index.html Vulnerable to cross-site scripting

Trust: 0.8

sources: JVNDB: JVNDB-2009-001520

DESCRIPTION

Cross-site scripting (XSS) vulnerability in +webvpn+/index.html in WebVPN on the Cisco Adaptive Security Appliances (ASA) 5520 with software 7.2(4)30 and earlier 7.2 versions including 7.2(2)22, and 8.0(4)28 and earlier 8.0 versions, when clientless mode is enabled, allows remote attackers to inject arbitrary web script or HTML via the Host HTTP header. Cisco ASA is prone to a cross-site scripting vulnerability. An attacker may leverage this issue to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site and to steal cookie-based authentication credentials. Cisco ASA software versions 8.0.4(2B) and prior running on ASA 5500 Series Adaptive Security Appliances are vulnerable

Trust: 1.98

sources: NVD: CVE-2009-1220 // JVNDB: JVNDB-2009-001520 // BID: 34307 // VULHUB: VHN-38666

AFFECTED PRODUCTS

vendor:ciscomodel:adaptive security appliancescope:eqversion:5520

Trust: 2.4

vendor:ciscomodel:iosscope:eqversion:7.2\(2\)22

Trust: 1.6

vendor:ciscomodel:pix/asascope:eqversion:7.2(3)006

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.1(2.5)

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.2(4)

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.0(6.7)

Trust: 0.3

vendor:ciscomodel:asa series adaptive security appliancescope:eqversion:55007.0.4

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.0.1.4

Trust: 0.3

vendor:ciscomodel:asa series adaptive security appliancescope:eqversion:55007.0.4.3

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:8.0(4)

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.2(4)10

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:8.0(2)17

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:6.0

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.0(6.33)

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.1(2)

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.2(2.15)

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:8.0

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.2(1)

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:8.0(3)9

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:8.0(4)25

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.1(2)78

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:8.0(3)10

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.1(2.27)

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.0(7)16

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.2.(2.17)

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.2.(2.16)

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.2(2.24)

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.2(2.14)

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.2(1.22)

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:8.0(4)24

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.2(3)2

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:8.0(3)14

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.2(4)26

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.2

Trust: 0.3

vendor:ciscomodel:asa series adaptive security appliancescope:eqversion:55200

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:8.0(4)22

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.2(4)9

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.2(4)11

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.0(5.2)

Trust: 0.3

vendor:ciscomodel:asa series adaptive security appliancescope:eqversion:55007.0

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.2.(2.7)

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.2.(2.8)

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:8.0(2)

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:8.0(4)28

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.2.2

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:8.0(3)

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.1(2)71

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.1.(2.49)

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:8.0(4)6

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.2(4)30

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.0(8)3

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.1(2)70

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.1(2)82

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.0(8)6

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.0(8)1

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.2(4)2

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:8.0(4)5

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.2.(2.19)

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.2(2)

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.1(2)74

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.0.4.3

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.2(4)27

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:8.0(3)15

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.2(2.10)

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.1(2.55)

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.1.(2.48)

Trust: 0.3

vendor:ciscomodel:asa series adaptive security appliancescope:eqversion:55007.1

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.2(4)16

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.0.4

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.0(5)

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.1

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.2(4)7

Trust: 0.3

vendor:ciscomodel:pix/asascope:eqversion:7.0

Trust: 0.3

sources: BID: 34307 // JVNDB: JVNDB-2009-001520 // CNNVD: CNNVD-200904-022 // NVD: CVE-2009-1220

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2009-1220
value: MEDIUM

Trust: 1.0

NVD: CVE-2009-1220
value: MEDIUM

Trust: 0.8

CNNVD: CNNVD-200904-022
value: MEDIUM

Trust: 0.6

VULHUB: VHN-38666
value: MEDIUM

Trust: 0.1

nvd@nist.gov: CVE-2009-1220
severity: MEDIUM
baseScore: 4.3
vectorString: AV:N/AC:M/AU:N/C:N/I:P/A:N
accessVector: NETWORK
accessComplexity: MEDIUM
authentication: NONE
confidentialityImpact: NONE
integrityImpact: PARTIAL
availabilityImpact: NONE
exploitabilityScore: 8.6
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.8

VULHUB: VHN-38666
severity: MEDIUM
baseScore: 4.3
vectorString: AV:N/AC:M/AU:N/C:N/I:P/A:N
accessVector: NETWORK
accessComplexity: MEDIUM
authentication: NONE
confidentialityImpact: NONE
integrityImpact: PARTIAL
availabilityImpact: NONE
exploitabilityScore: 8.6
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

sources: VULHUB: VHN-38666 // JVNDB: JVNDB-2009-001520 // CNNVD: CNNVD-200904-022 // NVD: CVE-2009-1220

PROBLEMTYPE DATA

problemtype:CWE-79

Trust: 1.9

sources: VULHUB: VHN-38666 // JVNDB: JVNDB-2009-001520 // NVD: CVE-2009-1220

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-200904-022

TYPE

XSS

Trust: 0.6

sources: CNNVD: CNNVD-200904-022

CONFIGURATIONS

sources: JVNDB: JVNDB-2009-001520

EXPLOIT AVAILABILITY

sources: VULHUB: VHN-38666

PATCH

title:17950url:http://tools.cisco.com/security/center/viewAlert.x?alertId=17950

Trust: 0.8

sources: JVNDB: JVNDB-2009-001520

EXTERNAL IDS

db:NVDid:CVE-2009-1220

Trust: 2.8

db:VUPENid:ADV-2009-1169

Trust: 2.5

db:BIDid:34307

Trust: 2.0

db:SECTRACKid:1022122

Trust: 1.7

db:JVNDBid:JVNDB-2009-001520

Trust: 0.8

db:CNNVDid:CNNVD-200904-022

Trust: 0.7

db:FULLDISCid:20090331 CISCO ASA5520 WEB VPN HOST HEADER XSS

Trust: 0.6

db:BUGTRAQid:20090331 CISCO ASA5520 WEB VPN HOST HEADER XSS

Trust: 0.6

db:BUGTRAQid:20090424 RE: CISCO ASA5520 WEB VPN HOST HEADER XSS

Trust: 0.6

db:XFid:5520

Trust: 0.6

db:XFid:49528

Trust: 0.6

db:EXPLOIT-DBid:32878

Trust: 0.1

db:SEEBUGid:SSVID-86145

Trust: 0.1

db:VULHUBid:VHN-38666

Trust: 0.1

sources: VULHUB: VHN-38666 // BID: 34307 // JVNDB: JVNDB-2009-001520 // CNNVD: CNNVD-200904-022 // NVD: CVE-2009-1220

REFERENCES

url:http://www.vupen.com/english/advisories/2009/1169

Trust: 2.5

url:http://tools.cisco.com/security/center/viewalert.x?alertid=17950

Trust: 2.0

url:http://www.securityfocus.com/bid/34307

Trust: 1.7

url:http://www.securityfocus.com/archive/1/502932

Trust: 1.7

url:http://archives.neohapsis.com/archives/fulldisclosure/2009-03/0478.html

Trust: 1.7

url:http://www.securitytracker.com/id?1022122

Trust: 1.7

url:http://www.securityfocus.com/archive/1/502313/100/0/threaded

Trust: 1.1

url:https://exchange.xforce.ibmcloud.com/vulnerabilities/49528

Trust: 1.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2009-1220

Trust: 0.8

url:http://web.nvd.nist.gov/view/vuln/detail?vulnid=cve-2009-1220

Trust: 0.8

url:/archive/1/502313

Trust: 0.6

url:http://xforce.iss.net/xforce/xfdb/49528

Trust: 0.6

url:http://www.securityfocus.com/archive/1/archive/1/502313/100/0/threaded

Trust: 0.6

url:cisco asa5520 web vpn host header xss

Trust: 0.3

url:/archive/1/502932

Trust: 0.3

sources: VULHUB: VHN-38666 // BID: 34307 // JVNDB: JVNDB-2009-001520 // CNNVD: CNNVD-200904-022 // NVD: CVE-2009-1220

CREDITS

Bugs NotHugs

Trust: 0.9

sources: BID: 34307 // CNNVD: CNNVD-200904-022

SOURCES

db:VULHUBid:VHN-38666
db:BIDid:34307
db:JVNDBid:JVNDB-2009-001520
db:CNNVDid:CNNVD-200904-022
db:NVDid:CVE-2009-1220

LAST UPDATE DATE

2024-11-23T22:46:31.190000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-38666date:2018-10-10T00:00:00
db:BIDid:34307date:2009-04-24T17:06:00
db:JVNDBid:JVNDB-2009-001520date:2009-06-30T00:00:00
db:CNNVDid:CNNVD-200904-022date:2009-05-06T00:00:00
db:NVDid:CVE-2009-1220date:2024-11-21T01:01:56.503

SOURCES RELEASE DATE

db:VULHUBid:VHN-38666date:2009-04-01T00:00:00
db:BIDid:34307date:2009-03-31T00:00:00
db:JVNDBid:JVNDB-2009-001520date:2009-06-30T00:00:00
db:CNNVDid:CNNVD-200904-022date:2009-04-01T00:00:00
db:NVDid:CVE-2009-1220date:2009-04-01T18:30:00.610