Dave Palumbo

1 exploit Active since Oct 2002
CVE-2002-0938 EXPLOITDB text WORKING POC
Cisco Secure Access Control Server 3.0 - Cross-Site Scripting via Setup.exe Action Parameter
Cross-site scripting vulnerability in CiscoSecure ACS 3.0 allows remote attackers to execute arbitrary script or HTML as other web users via the action argument in a link to setup.exe.