CVE-2005-1710: XSS
Multiple cross-site scripting (XSS) vulnerabilities in Blue Coat Reporter before 7.1.2 allow remote attackers to inject arbitrary web script or HTML via (1) the username in an Add User window or (2) the license key (volatile.licensetoadd parameter) in the Licensing page.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2005-1710?
CVE-2005-1710 is classified as a medium-severity vulnerability due to its potential for cross-site scripting attacks.
How do I fix CVE-2005-1710?
To fix CVE-2005-1710, upgrade Blue Coat Reporter to version 7.1.2 or later.
What types of attacks are associated with CVE-2005-1710?
CVE-2005-1710 enables remote attackers to conduct cross-site scripting attacks through the username and license key inputs.
Which versions of Blue Coat Reporter are affected by CVE-2005-1710?
CVE-2005-1710 affects Blue Coat Reporter versions prior to 7.1.2, specifically up to version 7.1.1.
Who can exploit CVE-2005-1710?
CVE-2005-1710 can be exploited by remote attackers with access to the affected Blue Coat Reporter web interface.