Cross-site scripting (XSS) vulnerability in the login form in Citrix MetaFrame Secure Access Manager 2.0 up to and including 2.2 and NFuse Elite 1.0 allows remote malicious users to inject arbitrary web script or HTML via the username field.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
citrix metaframe secure access manager 2.0 |
||
citrix metaframe secure access manager 2.2 |
||
citrix metaframe secure access manager 2.1 |
||
citrix nfuse 1.0 |