CVE-2008-2272: XSS
Multiple cross-site scripting (XSS) vulnerabilities in the web interface in Aruba Mobility Controller 2.4.8.x-FIPS, 2.5.5.x, 2.5.6.x, 3.1.1.x, 3.2.0.x, and 3.3.1.x allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-2272?
CVE-2008-2272 has a medium severity rating due to its potential for cross-site scripting attacks.
How do I fix CVE-2008-2272?
To fix CVE-2008-2272, upgrade the Aruba Mobility Controller to a version that addresses the XSS vulnerabilities.
What versions of Aruba Mobility Controller are affected by CVE-2008-2272?
CVE-2008-2272 affects Aruba Mobility Controller versions 2.4.8, 2.5.5, 2.5.6, 3.1.1, 3.2.0, and 3.3.1.
What types of attacks can be executed by exploiting CVE-2008-2272?
Exploiting CVE-2008-2272 can allow remote attackers to execute arbitrary web scripts or HTML in the user's browser.
Is CVE-2008-2272 specific to any particular configuration of the Aruba Mobility Controller?
CVE-2008-2272 is related to the web interface but does not specify a particular configuration beyond the affected versions.