CVE-2012-4982: Input Validation
Open redirect vulnerability in assets/login on the Forescout CounterACT NAC device before 7.0 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the a parameter.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-4982?
CVE-2012-4982 is considered a medium severity vulnerability due to its potential for exploitation through phishing attacks.
How do I fix CVE-2012-4982?
To fix CVE-2012-4982, upgrade to version 7.0 or later of the Forescout CounterACT NAC device.
What type of attack does CVE-2012-4982 enable?
CVE-2012-4982 enables remote attackers to perform open redirect attacks, allowing them to redirect users to malicious websites.
Which versions of Forescout CounterACT are affected by CVE-2012-4982?
CVE-2012-4982 affects Forescout CounterACT versions prior to 7.0, specifically listed as 6.3.4.10.
What is the impact of exploiting CVE-2012-4982?
Exploiting CVE-2012-4982 can lead to phishing attacks that compromise user credentials and sensitive information.