Known Vulnerabilities for Forefront Unified Access Gateway by Microsoft
Listed below are 10 of the newest known vulnerabilities associated with "Forefront Unified Access Gateway" by "Microsoft".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2018-12571 | uniquesig0/InternalSite/InitParams.aspx in Microsoft Forefront Unified Access Gateway 2010 allows remote attackers to trigger... | 9.8 - CRITICAL | 2018-07-05 | 2018-09-04 |
| CVE-2012-0147 | Microsoft Forefront Unified Access Gateway (UAG) 2010 SP1 and SP1 Update 1 does not properly configure the default web site, ... | 5 - MEDIUM | 2012-04-10 | 2018-10-12 |
| CVE-2012-0146 | Open redirect vulnerability in Microsoft Forefront Unified Access Gateway (UAG) 2010 SP1 and SP1 Update 1 allows remote attac... | 5.8 - MEDIUM | 2012-04-10 | 2018-10-12 |
| CVE-2011-2012 | Microsoft Forefront Unified Access Gateway (UAG) 2010 Gold, Update 1, Update 2, and SP1 does not properly validate session co... | 5 - MEDIUM | 2011-10-12 | 2018-10-12 |
| CVE-2011-1969 | Microsoft Forefront Unified Access Gateway (UAG) 2010 Gold, Update 1, Update 2, and SP1 provides the MicrosoftClient.jar file... | 9.3 - HIGH | 2011-10-12 | 2018-10-12 |
| CVE-2011-1897 | Cross-site scripting (XSS) vulnerability in Microsoft Forefront Unified Access Gateway (UAG) 2010 Gold, Update 1, Update 2, a... | 4.3 - MEDIUM | 2011-10-12 | 2018-10-12 |
| CVE-2011-1896 | Cross-site scripting (XSS) vulnerability in Microsoft Forefront Unified Access Gateway (UAG) 2010 Gold, Update 1, Update 2, a... | 4.3 - MEDIUM | 2011-10-12 | 2018-10-12 |
| CVE-2011-1895 | CRLF injection vulnerability in Microsoft Forefront Unified Access Gateway (UAG) 2010 Gold, Update 1, Update 2, and SP1 allow... | 4.3 - MEDIUM | 2011-10-12 | 2018-10-12 |
| CVE-2010-2733 | Cross-site scripting (XSS) vulnerability in the Web Monitor in Microsoft Forefront Unified Access Gateway (UAG) 2010 Gold, 20... | 4.3 - MEDIUM | 2010-11-10 | 2018-10-12 |
| CVE-2010-2732 | Open redirect vulnerability in the web interface in Microsoft Forefront Unified Access Gateway (UAG) 2010 Gold, 2010 Update 1... | 5.8 - MEDIUM | 2010-11-10 | 2018-10-12 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Microsoft | Forefront Unified Access Gateway | 2010 | All | All | All |
| Application | Microsoft | Forefront Unified Access Gateway | 2010 | sp1 | All | All |
| Application | Microsoft | Forefront Unified Access Gateway | 2010 | sp1_update1 | All | All |
| Application | Microsoft | Forefront Unified Access Gateway | 2010 | update1 | All | All |
| Application | Microsoft | Forefront Unified Access Gateway | 2010 | update2 | All | All |