PoC Index

CVE-2012-1038

MEDIUM 4.3EPSS 1.6%

Cross-site scripting (XSS) vulnerability in the WebAAA login functionality (wba_login.html) in Juniper Networks Mobility System Software (MSS) 7.6.x before 7.6.3, 7.7.x before 7.7.1, 7.5.x before 7.5.3, and other unspecified versions before 7.4 and 7.3 allows remote attackers to inject arbitrary web script or HTML via a crafted parameter name.

CVSS v2.0
4.3 MEDIUMAV:N/AC:M/Au:N/C:N/I:P/A:N
EPSS
1.62% chance of exploitation in the next 30 days, 74th percentile
Published
2013-04-03
Updated
2024-08-06

ExploitDB entries (1)

References

Related