CVE-2003-0389: XSS
Cross-site scripting (XSS) vulnerability in the secure redirect function of RSA ACE/Agent 5.0 for Windows, and 5.x for Web, allows remote attackers to insert arbitrary web script and possibly cause users to enter a passphrase via a GET request containing the script.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2003-0389?
CVE-2003-0389 is considered to be a moderate severity vulnerability due to the potential for cross-site scripting attacks.
How do I fix CVE-2003-0389?
To fix CVE-2003-0389, it is recommended to upgrade to a later version of RSA ACE/Agent that addresses this vulnerability.
What systems are affected by CVE-2003-0389?
CVE-2003-0389 specifically affects RSA ACE/Agent version 5.0 for Windows and version 5.x for Web.
What type of vulnerability is CVE-2003-0389?
CVE-2003-0389 is a cross-site scripting (XSS) vulnerability that allows the injection of arbitrary web scripts.
Can CVE-2003-0389 allow attackers to steal user information?
Yes, CVE-2003-0389 can potentially allow attackers to insert scripts that may lead to the theft of sensitive user information.