4.3
CVSSv2

CVE-2005-3971

Published: 03/12/2005 Updated: 20/07/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in the login form in Citrix MetaFrame Secure Access Manager 2.0 up to and including 2.2 and NFuse Elite 1.0 allows remote malicious users to inject arbitrary web script or HTML via the username field.

Vulnerable Product Search on Vulmon Subscribe to Product

citrix metaframe secure access manager 2.0

citrix nfuse 1.0

citrix metaframe secure access manager 2.1

citrix metaframe secure access manager 2.2