Lucene search

K
nvd[email protected]NVD:CVE-2014-0338
HistoryMar 16, 2014 - 2:06 p.m.

CVE-2014-0338

2014-03-1614:06:45
CWE-79
web.nvd.nist.gov
1

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.7

Confidence

High

EPSS

0.004

Percentile

74.2%

Multiple cross-site scripting (XSS) vulnerabilities in the firewall policy management pages in WatchGuard Fireware XTM before 11.8.3 allow remote attackers to inject arbitrary web script or HTML via the pol_name parameter.

Affected configurations

Nvd
Node
watchguardfirewareRange11.8.1
OR
watchguardfirewareMatch11.6
OR
watchguardfirewareMatch11.6.1
OR
watchguardfirewareMatch11.6.3
OR
watchguardfirewareMatch11.6.5
OR
watchguardfirewareMatch11.6.6
OR
watchguardfirewareMatch11.7
OR
watchguardfirewareMatch11.7.2
OR
watchguardfirewareMatch11.7.3
OR
watchguardfirewareMatch11.7.4
OR
watchguardfirewareMatch11.8
VendorProductVersionCPE
watchguardfireware*cpe:2.3:o:watchguard:fireware:*:*:*:*:*:*:*:*
watchguardfireware11.6cpe:2.3:o:watchguard:fireware:11.6:*:*:*:*:*:*:*
watchguardfireware11.6.1cpe:2.3:o:watchguard:fireware:11.6.1:*:*:*:*:*:*:*
watchguardfireware11.6.3cpe:2.3:o:watchguard:fireware:11.6.3:*:*:*:*:*:*:*
watchguardfireware11.6.5cpe:2.3:o:watchguard:fireware:11.6.5:*:*:*:*:*:*:*
watchguardfireware11.6.6cpe:2.3:o:watchguard:fireware:11.6.6:*:*:*:*:*:*:*
watchguardfireware11.7cpe:2.3:o:watchguard:fireware:11.7:*:*:*:*:*:*:*
watchguardfireware11.7.2cpe:2.3:o:watchguard:fireware:11.7.2:*:*:*:*:*:*:*
watchguardfireware11.7.3cpe:2.3:o:watchguard:fireware:11.7.3:*:*:*:*:*:*:*
watchguardfireware11.7.4cpe:2.3:o:watchguard:fireware:11.7.4:*:*:*:*:*:*:*
Rows per page:
1-10 of 111

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.7

Confidence

High

EPSS

0.004

Percentile

74.2%

Related for NVD:CVE-2014-0338