CVE-2012-5316: XSS
Multiple cross-site scripting (XSS) vulnerabilities in Barracuda Spam & Virus Firewall 600 Firmware 4.0.1.009 and earlier allow remote authenticated users to inject arbitrary web script or HTML via (1) Troubleshooting in the Trace route Device module or (2) LDAP Username in the LDAP Configuration module.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-5316?
The severity of CVE-2012-5316 is rated low, with a score of 3.5.
What are the main vulnerabilities associated with CVE-2012-5316?
CVE-2012-5316 contains multiple cross-site scripting (XSS) vulnerabilities that allow remote authenticated users to inject arbitrary web scripts or HTML.
How do I fix CVE-2012-5316?
To fix CVE-2012-5316, it is recommended to upgrade to a patched version of Barracuda Spam & Virus Firewall that addresses these XSS vulnerabilities.
Who is affected by CVE-2012-5316?
CVE-2012-5316 affects users of Barracuda Spam & Virus Firewall 600 Firmware version 4.0.1.009 and earlier.
What attack vectors are identified in CVE-2012-5316?
The attack vectors for CVE-2012-5316 include the Troubleshooting section in the Trace route Device module and the LDAP Username field in the LDAP Configuration module.