CVE-2012-2563: XSS
Multiple cross-site scripting (XSS) vulnerabilities in Bloxx Web Filtering before 5.0.14 allow (1) remote attackers to inject arbitrary web script or HTML via web traffic that is examined within the Bloxx Reports component, and allow (2) remote authenticated administrators to inject arbitrary web script or HTML via vectors involving administrative menu functions.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-2563?
CVE-2012-2563 has a medium severity score due to multiple cross-site scripting vulnerabilities.
How do I fix CVE-2012-2563?
To fix CVE-2012-2563, upgrade Bloxx Web Filtering to version 5.0.14 or later.
What software is affected by CVE-2012-2563?
CVE-2012-2563 affects Bloxx Web Filtering versions prior to 5.0.14.
Can CVE-2012-2563 be exploited remotely?
Yes, CVE-2012-2563 can be exploited remotely by attackers injecting arbitrary web scripts through web traffic.
Who can exploit CVE-2012-2563?
Both remote attackers and authenticated administrators can exploit CVE-2012-2563 to inject malicious content.