CVE-2011-5125: XSS
Published Aug 26, 2012
·Updated
Cross-site scripting (XSS) vulnerability in Blue Coat Director before 5.5.2.3 allows remote attackers to inject arbitrary web script or HTML via vectors involving the HTTP TRACE method.
Affected Software
3 affected components
bluecoat Director=5.5
bluecoat Director=5.4
bluecoat Director<=5.5.2
Event History
Aug 26, 2012
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2011-5125?
CVE-2011-5125 is classified as a medium severity vulnerability due to its potential to allow XSS attacks.
2
How do I fix CVE-2011-5125?
To fix CVE-2011-5125, upgrade to Blue Coat Director version 5.5.2.3 or later.
3
What systems are affected by CVE-2011-5125?
CVE-2011-5125 affects Blue Coat Director versions 5.4, 5.5 and all versions prior to 5.5.2.3.
4
What type of attack does CVE-2011-5125 enable?
CVE-2011-5125 enables remote attackers to perform Cross-Site Scripting (XSS) attacks.
5
What is the impact of exploiting CVE-2011-5125?
Exploiting CVE-2011-5125 can lead to the injection of arbitrary web scripts or HTML into the target site.