4.3
CVSSv2

CVE-2012-6559

Published: 23/05/2013 Updated: 29/08/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in FreeNAC 3.02 allow remote malicious users to inject arbitrary web script or HTML via the (1) comment, (2) mac, (3) graphtype, (4) name, or (5) type parameter to stats.php; or (6) comment parameter to deviceadd.php.

Vulnerable Product Search on Vulmon Subscribe to Product

freenac freenac 3.0.2

Exploits

FreeNAC version 302 SQL Injection and XSS Vulnerabilties Date: May 19, 2012 Author: Blake Software Link: sourceforgenet/project/showfilesphp?group_id=170004 Version: 302 Tested on: Ubuntu 804 (freenac version 302 vmware appliance) FreeNAC FreeNAC provides Virtual LAN assignment, LAN access control (for all kinds of network devices suc ...