First published: Wed Dec 05 2012(Updated: )
Open redirect vulnerability in assets/login on the Forescout CounterACT NAC device before 7.0 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the a parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
ForeScout CounterACT | =6.3.4.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-4982 is considered a medium severity vulnerability due to its potential for exploitation through phishing attacks.
To fix CVE-2012-4982, upgrade to version 7.0 or later of the Forescout CounterACT NAC device.
CVE-2012-4982 enables remote attackers to perform open redirect attacks, allowing them to redirect users to malicious websites.
CVE-2012-4982 affects Forescout CounterACT versions prior to 7.0, specifically listed as 6.3.4.10.
Exploiting CVE-2012-4982 can lead to phishing attacks that compromise user credentials and sensitive information.