CVE-2005-2186: XSS
Multiple cross-site scripting (XSS) vulnerabilities in McAfee IntruShield Security Management System allow remote authenticated users to inject arbitrary web script or HTML via the (1) thirdMenuName or (2) resourceName parameter to SystemEvent.jsp.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2005-2186?
CVE-2005-2186 has a moderate severity level due to the potential for cross-site scripting attacks.
How do I fix CVE-2005-2186?
To fix CVE-2005-2186, ensure you apply the latest patches and updates from McAfee for the IntruShield Security Management System.
What are the potential impacts of CVE-2005-2186?
CVE-2005-2186 can allow attackers to inject malicious scripts, potentially leading to session hijacking or unauthorized access.
Who is affected by CVE-2005-2186?
CVE-2005-2186 affects users of the McAfee IntruShield Security Management System who are authenticated.
Can CVE-2005-2186 be exploited remotely?
Yes, CVE-2005-2186 can be exploited remotely by authenticated users to execute arbitrary web scripts.