4.3
CVSSv2

CVE-2013-2290

Published: 28/03/2013 Updated: 29/08/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in the dashboard of the ArubaOS Administration WebUI in Aruba Networks ArubaOS 6.2.x prior to 6.2.0.3, 6.1.3.x prior to 6.1.3.7, 6.1.x-FIPS prior to 6.1.4.3-FIPS, and 6.1.x-AirGroup prior to 6.1.3.6-AirGroup, as used by Mobility Controller, allows remote wireless access points to inject arbitrary web script or HTML via a crafted SSID.

Vulnerable Product Search on Vulmon Subscribe to Product

arubanetworks arubaos 6.2.0.1

arubanetworks arubaos 6.2.0.2

arubanetworks arubaos 6.2.0.0

arubanetworks arubaos 6.1.3.5

arubanetworks arubaos 6.1.3.2

arubanetworks arubaos 6.1.3.4

arubanetworks arubaos 6.1.3.6

arubanetworks arubaos 6.1.3.1

arubanetworks arubaos 6.1.3.0

arubanetworks arubaos 6.1.2.3

arubanetworks arubaos 6.1.4.2