CVE-2008-1463
Imperva SecureSphere MX Management Server 5.0 - Cross-Site Scripting via Alert Page Corrective Action Section
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-1463. PoCs published by Berezniski.
AI-analyzed exploit summary This exploit demonstrates a cross-site scripting (XSS) vulnerability in Imperva SecureSphere 5.0 MX Management Server. The PoC leverages improper input sanitization to execute arbitrary JavaScript in the context of the affected site.
Description
Cross-site scripting (XSS) vulnerability in the management GUI in Imperva SecureSphere MX Management Server 5.0 allows remote attackers to inject arbitrary web script or HTML via an invalid or prohibited request to a web server protected by SecureSphere, which triggers injection into the "corrective action" section of an alert page.
Exploits (1)
This exploit demonstrates a cross-site scripting (XSS) vulnerability in Imperva SecureSphere 5.0 MX Management Server. The PoC leverages improper input sanitization to execute arbitrary JavaScript in the context of the affected site.