Lucene search

K
nvd[email protected]NVD:CVE-2008-2333
HistoryMay 23, 2008 - 3:32 p.m.

CVE-2008-2333

2008-05-2315:32:00
CWE-79
web.nvd.nist.gov
1

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

5.6 Medium

AI Score

Confidence

High

0.004 Low

EPSS

Percentile

74.9%

Cross-site scripting (XSS) vulnerability in ldap_test.cgi in Barracuda Spam Firewall (BSF) before 3.5.11.025 allows remote attackers to inject arbitrary web script or HTML via the email parameter.

Affected configurations

NVD
Node
barracuda_networksbarracuda_spam_firewallRangeโ‰ค3.5.11.020
OR
barracuda_networksbarracuda_spam_firewallMatch3.1.10
OR
barracuda_networksbarracuda_spam_firewallMatch3.1.16
OR
barracuda_networksbarracuda_spam_firewallMatch3.1.17
OR
barracuda_networksbarracuda_spam_firewallMatch3.1.18
OR
barracuda_networksbarracuda_spam_firewallMatch3.3.0.54
OR
barracuda_networksbarracuda_spam_firewallMatch3.3.01.001
OR
barracuda_networksbarracuda_spam_firewallMatch3.3.3
OR
barracuda_networksbarracuda_spam_firewallMatch3.3.03.053
OR
barracuda_networksbarracuda_spam_firewallMatch3.3.03.055
OR
barracuda_networksbarracuda_spam_firewallMatch3.3.15.026
OR
barracuda_networksbarracuda_spam_firewallMatch3.4
OR
barracuda_networksbarracuda_spam_firewallMatch3.4.10.102

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

5.6 Medium

AI Score

Confidence

High

0.004 Low

EPSS

Percentile

74.9%