CVE-2008-1180: XSS
Cross-site scripting (XSS) vulnerability in dana-na/auth/rdremediate.cgi in Juniper Networks Secure Access 2000 5.5 R1 build 11711 allows remote attackers to inject arbitrary web script or HTML via the deliverymode parameter.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-1180?
CVE-2008-1180 is considered a moderate severity vulnerability due to its potential for cross-site scripting (XSS) attacks.
How do I fix CVE-2008-1180?
To fix CVE-2008-1180, upgrade to a later version of Juniper Networks Secure Access 2000 that has patched this vulnerability.
What are the consequences of CVE-2008-1180?
Exploitation of CVE-2008-1180 can lead to unauthorized script execution in a user's browser, potentially compromising user data.
Which versions of Juniper Secure Access 2000 are affected by CVE-2008-1180?
CVE-2008-1180 affects Juniper Secure Access 2000 version 5.5 R1 build 11711.
Is CVE-2008-1180 a remote attack vulnerability?
Yes, CVE-2008-1180 allows remote attackers to exploit the vulnerability through malicious scripts injected via the delivery_mode parameter.