Required CVE Record Information
Description
Cross-site scripting (XSS) vulnerability in status_rrd_graph.php in pfSense before 2.0.1 allows remote attackers to inject arbitrary web script or HTML via the style parameter.
References 5 Total
- securityfocus.com: 51169 vdb-entry
- osvdb.org: 77981 vdb-entry
- exchange.xforce.ibmcloud.com: pfsense-style-xss(72090) vdb-entry
- http://blog.pfsense.org/?p=633
- secunia.com: 46780 third-party-advisory
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 5 Total
- securityfocus.com: 51169 vdb-entryx_transferred
- osvdb.org: 77981 vdb-entryx_transferred
- exchange.xforce.ibmcloud.com: pfsense-style-xss(72090) vdb-entryx_transferred
- http://blog.pfsense.org/?p=633 x_transferred
- secunia.com: 46780 third-party-advisoryx_transferred