Vulnerabilities > F5 > Firepass SSL VPN > 6.0

DATE CVE VULNERABILITY TITLE RISK
2009-06-18 CVE-2009-2119 Cross-Site Scripting vulnerability in F5 Firepass SSL VPN
Cross-site scripting (XSS) vulnerability in the login interface (my.logon.php3) in F5 FirePass SSL VPN 5.5 through 5.5.2 and 6.0 through 6.0.3 allows remote attackers to inject arbitrary web script or HTML via a base64-encoded xcho parameter.
network
f5 CWE-79
4.3
2008-04-30 CVE-2008-2030 Cross-Site Scripting vulnerability in F5 Firepass 4100 and Firepass SSL VPN
Cross-site scripting (XSS) vulnerability in installControl.php3 in F5 FirePass 4100 SSL VPN 5.4.2-5.5.2 and 6.0-6.2 allows remote attackers to inject arbitrary web script or HTML via the query string.
network
f5 CWE-79
4.3