CVE-2012-5460
Summary
| CVE | CVE-2012-5460 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2013-08-01 13:32:00 UTC |
| Updated | 2013-08-01 13:32:00 UTC |
| Description | Cross-site scripting (XSS) vulnerability in the help page in Juniper Secure Access (SA) with IVE OS before 7.1r13, 7.2.x before 7.2r7, and 7.3.x before 7.3r2 allows remote attackers to inject arbitrary web script or HTML via the WWHSearchWordsText parameter. |
Risk And Classification
Problem Types: CWE-79
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Juniper | Fips Secure Access 4000 | - | All | All | All |
| Hardware | Juniper | Fips Secure Access 4000 | - | All | All | All |
| Hardware | Juniper | Fips Secure Access 4500 | - | All | All | All |
| Hardware | Juniper | Fips Secure Access 4500 | - | All | All | All |
| Hardware | Juniper | Fips Secure Access 6000 | - | All | All | All |
| Hardware | Juniper | Fips Secure Access 6000 | - | All | All | All |
| Hardware | Juniper | Fips Secure Access 6500 | - | All | All | All |
| Hardware | Juniper | Fips Secure Access 6500 | - | All | All | All |
| Operating System | Juniper | Ive Os | 7.1 | All | All | All |
| Operating System | Juniper | Ive Os | 7.2 | All | All | All |
| Operating System | Juniper | Ive Os | 7.3 | All | All | All |
| Operating System | Juniper | Ive Os | 7.1 | All | All | All |
| Operating System | Juniper | Ive Os | 7.2 | All | All | All |
| Operating System | Juniper | Ive Os | 7.3 | All | All | All |
| Hardware | Juniper | Mag2600 Gateway | - | All | All | All |
| Hardware | Juniper | Mag2600 Gateway | - | All | All | All |
| Hardware | Juniper | Mag4610 Gateway | - | All | All | All |
| Hardware | Juniper | Mag4610 Gateway | - | All | All | All |
| Hardware | Juniper | Mag6610 Gateway | - | All | All | All |
| Hardware | Juniper | Mag6610 Gateway | - | All | All | All |
| Hardware | Juniper | Mag6611 Gateway | - | All | All | All |
| Hardware | Juniper | Mag6611 Gateway | - | All | All | All |
| Hardware | Juniper | Secure Access 2000 | - | All | All | All |
| Hardware | Juniper | Secure Access 2000 | - | All | All | All |
| Hardware | Juniper | Secure Access 2500 | - | All | All | All |
| Hardware | Juniper | Secure Access 2500 | - | All | All | All |
| Hardware | Juniper | Secure Access 4000 | - | All | All | All |
| Hardware | Juniper | Secure Access 4000 | - | All | All | All |
| Hardware | Juniper | Secure Access 4500 | - | All | All | All |
| Hardware | Juniper | Secure Access 4500 | - | All | All | All |
| Hardware | Juniper | Secure Access 6000 | - | All | All | All |
| Hardware | Juniper | Secure Access 6000 | - | All | All | All |
| Hardware | Juniper | Secure Access 6500 | - | All | All | All |
| Hardware | Juniper | Secure Access 6500 | - | All | All | All |
| Hardware | Juniper | Secure Access 700 | - | All | All | All |
| Hardware | Juniper | Secure Access 700 | - | All | All | All |
| Application | Juniper | Secure Access Virtual Appliance | - | All | All | All |
| Application | Juniper | Secure Access Virtual Appliance | - | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Juniper Networks | MISC | www.juniper.net | Vendor Advisory |
| 20130722 Juniper Secure Access XSS Vulnerability | BUGTRAQ | archives.neohapsis.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.