Vulnerabilities > Ipdiva > Ipdiva

DATE CVE VULNERABILITY TITLE RISK
2008-02-22 CVE-2008-0915 Cross-Site Scripting vulnerability in IPdiva SSL VPN
The Mediation server in IPdiva SSL VPN Server 2.2 before 2.2.8.84 and 2.3 before 2.3.2.14 stores the number of remaining allowed login attempts in a cookie, which makes it easier for remote attackers to conduct brute force attacks by manipulating this cookie's value.
network
low complexity
ipdiva
6.4
2008-02-22 CVE-2008-0914 Cross-Site Scripting vulnerability in Ipdiva 2.2/2.3
Multiple cross-site scripting (XSS) vulnerabilities in the Mediation server in IPdiva SSL VPN Server 2.2 before 2.2.8.84 and 2.3 before 2.3.2.14 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
network
ipdiva CWE-79
4.3