// For flags

CVE-2009-1162

 

Severity Score

4.3
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Cross-site scripting (XSS) vulnerability in the Spam Quarantine login page in Cisco IronPort AsyncOS before 6.5.2 on Series C, M, and X appliances allows remote attackers to inject arbitrary web script or HTML via the referrer parameter.

Vulnerabilidad de ejecución de secuencias de comandos en sitios cruzados (XSS) en la página de login Spam Quarantine en Cisco IronPort AsyncOS anterior a v6.5.2 en las Series C, M y X, permite a atacantes remotos inyectar secuencias de comandos web y HTML de su elección a través del parámetro "referer".

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Medium
Authentication
None
Confidentiality
None
Integrity
Partial
Availability
None
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2009-03-26 CVE Reserved
  • 2009-06-05 CVE Published
  • 2023-03-07 EPSS Updated
  • 2024-08-07 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.0.0-754
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.0.0-754"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*c
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.0.0-754
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.0.0-754"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*m
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.0.0-754
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.0.0-754"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*x
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.0.0-757
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.0.0-757"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*c
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.0.0-757
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.0.0-757"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*m
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.0.0-757
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.0.0-757"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*x
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.1.0-301
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.1.0-301"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*c
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.1.0-301
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.1.0-301"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*m
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.1.0-301
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.1.0-301"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*x
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.1.0-304
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.1.0-304"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*c
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.1.0-304
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.1.0-304"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*m
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.1.0-304
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.1.0-304"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*x
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.1.0-306
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.1.0-306"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*c
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.1.0-306
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.1.0-306"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*m
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.1.0-306
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.1.0-306"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*x
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.1.0-307
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.1.0-307"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*c
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.1.0-307
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.1.0-307"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*m
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.1.0-307
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.1.0-307"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*x
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.1.5-110
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.1.5-110"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*c
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.1.5-110
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.1.5-110"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*m
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.1.5-110
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.1.5-110"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*x
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.1.6-003
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.1.6-003"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*c
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.1.6-003
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.1.6-003"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*m
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.1.6-003
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.1.6-003"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*x
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.3.5-003
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.3.5-003"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*c
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.3.5-003
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.3.5-003"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*m
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.3.5-003
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.3.5-003"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*x
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.3.6-003
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.3.6-003"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*c
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.3.6-003
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.3.6-003"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*m
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.3.6-003
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.3.6-003"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*x
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.5.0-405
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.5.0-405"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*c
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.5.0-405
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.5.0-405"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*m
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.5.0-405
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.5.0-405"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*x
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.5.1-005
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.5.1-005"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*c
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.5.1-005
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.5.1-005"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*m
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.5.1-005
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.5.1-005"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*x
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.6.4.0-273
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.6.4.0-273"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*c
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.6.4.0-273
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.6.4.0-273"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*m
Affected
Cisco
Search vendor "Cisco"
Ironport Asyncos
Search vendor "Cisco" for product "Ironport Asyncos"
6.6.4.0-273
Search vendor "Cisco" for product "Ironport Asyncos" and version "6.6.4.0-273"
-
Affected
in Cisco
Search vendor "Cisco"
Ironport Email Security Appliances
Search vendor "Cisco" for product "Ironport Email Security Appliances"
*x
Affected