First published: Sun Aug 26 2012(Updated: )
The Active Content Transformation functionality in Blue Coat ProxySG before SGOS 4.3.4.2, 5.x before SGOS 5.4.5.1, 5.5 before SGOS 5.5.4.1, and 6.x before SGOS 6.1.2.1 allows remote attackers to bypass JavaScript detection via HTML entities.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Blue Coat ProxySG OS | <=4.3.4 | |
Blue Coat ProxySG OS | =3.2.6 | |
Blue Coat ProxySG OS | =4.1.2.1 | |
Blue Coat ProxySG OS | =4.2.1.2 | |
Blue Coat ProxySG OS | =4.2.1.6 | |
Blue Coat ProxySG OS | =4.2.2 | |
Blue Coat ProxySG OS | =4.2.2.1 | |
Blue Coat ProxySG OS | =4.2.2.2 | |
Blue Coat ProxySG OS | =4.2.3 | |
Blue Coat ProxySG OS | =4.2.3.4 | |
Blue Coat ProxySG OS | =4.2.3.7 | |
Blue Coat ProxySG OS | =4.2.3.12 | |
Blue Coat ProxySG OS | =4.2.3.21 | |
Blue Coat ProxySG OS | =4.2.3.26 | |
Blue Coat ProxySG OS | =4.2.4.1 | |
Blue Coat ProxySG OS | =4.2.5 | |
Blue Coat ProxySG OS | =4.2.5.1 | |
Blue Coat ProxySG OS | =4.2.6 | |
Blue Coat ProxySG OS | =4.2.6.1 | |
Blue Coat ProxySG OS | =4.2.6.4 | |
Blue Coat ProxySG OS | =4.2.7.1 | |
Blue Coat ProxySG OS | =5.2.2.4 | |
Blue Coat ProxySG OS | =5.4.5 | |
Blue Coat ProxySG OS | =5.5.4 | |
Blue Coat ProxySG OS | =6.1.2 | |
Bluecoat ProxySG | ||
Blue Coat ProxySG SG210-10 | ||
Blue Coat ProxySG SG210-10 | ||
Bluecoat ProxySG | ||
Bluecoat ProxySG | ||
Blue Coat ProxySG SG210-5 | ||
Blue Coat ProxySG SG210-5 | ||
Blue Coat ProxySG SG510-10 | ||
Blue Coat ProxySG SG510-10 | ||
Blue Coat ProxySG SG510-20 | ||
Blue Coat ProxySG SG510-20 | ||
Bluecoat ProxySG | ||
Bluecoat ProxySG | ||
Blue Coat ProxySG SG510-5 | ||
bluecoat ProxySG sg810-10 | ||
bluecoat ProxySG sg810-10 | ||
Blue Coat ProxySG SG810-20 | ||
Blue Coat ProxySG SG810-20 | ||
Blue Coat ProxySG SG810-25 | ||
Blue Coat ProxySG SG810-25 | ||
Blue Coat ProxySG SG810-5 | ||
Blue Coat ProxySG SG9000-10 | ||
Blue Coat ProxySG SG9000-10 | ||
Blue Coat ProxySG SG9000-20 | ||
Blue Coat ProxySG SG9000-20 | ||
Blue Coat ProxySG SG9000-5 | ||
Blue Coat ProxySG SG9000-5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-5190 has been classified as a medium severity vulnerability.
To fix CVE-2010-5190, you should upgrade to Blue Coat ProxySG SGOS version 4.3.4.2, 5.4.5.1, 5.5.4.1, or 6.1.2.1 or later.
CVE-2010-5190 can be exploited by remote attackers to bypass JavaScript detection via HTML entities.
CVE-2010-5190 affects Blue Coat ProxySG versions prior to SGOS 4.3.4.2, 5.x before SGOS 5.4.5.1, 5.5 before SGOS 5.5.4.1, and 6.x before SGOS 6.1.2.1.
You can determine if your system is vulnerable to CVE-2010-5190 by checking the current SGOS version of your Blue Coat ProxySG and comparing it to the known affected versions.