CVE-2008-0539
F5 BIG-IP Application Security Manager 9.4.3 - Cross-Site Scripting via Report Type Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-0539. PoCs published by nnposter.
AI-analyzed exploit summary This exploit demonstrates a cross-site scripting (XSS) vulnerability in F5 BIG-IP Application Security Manager by injecting arbitrary JavaScript code via the 'report_type' parameter in the URL. The payload triggers an alert dialog, proving the vulnerability.
Description
Cross-site scripting (XSS) vulnerability in dms/policy/rep_request.php in F5 BIG-IP Application Security Manager (ASM) 9.4.3 allows remote attackers to inject arbitrary web script or HTML via the report_type parameter.
Exploits (1)
This exploit demonstrates a cross-site scripting (XSS) vulnerability in F5 BIG-IP Application Security Manager by injecting arbitrary JavaScript code via the 'report_type' parameter in the URL. The payload triggers an alert dialog, proving the vulnerability.