CVE-2009-3565

Mcafee Intrushield Network Security Manager < 5.1.7.74 - XSS

Title source: rule

Description

Multiple cross-site scripting (XSS) vulnerabilities in intruvert/jsp/module/Login.jsp in McAfee IntruShield Network Security Manager (NSM) before 5.1.11.6 allow remote attackers to inject arbitrary web script or HTML via the (1) iaction or (2) node parameter.

Exploits (2)

exploitdb WORKING POC VERIFIED
by Daniel King · textwebappsjsp
https://www.exploit-db.com/exploits/33346
exploitdb WORKING POC VERIFIED
by Daniel King · textwebappsjsp
https://www.exploit-db.com/exploits/10061

Scores

EPSS 0.0592
EPSS Percentile 90.5%

Classification

CWE
CWE-79
Status published

Affected Products (4)

mcafee/intrushield_network_security_manager < 5.1.7.74
mcafee/intrushield_network_security_manager
mcafee/intrushield_network_security_manager
n/a/n/a

Timeline

Published Nov 13, 2009
Tracked Since Feb 18, 2026