CVE-2009-3565
Mcafee Intrushield Network Security Manager < 5.1.7.74 - XSS
Title source: ruleDescription
Multiple cross-site scripting (XSS) vulnerabilities in intruvert/jsp/module/Login.jsp in McAfee IntruShield Network Security Manager (NSM) before 5.1.11.6 allow remote attackers to inject arbitrary web script or HTML via the (1) iaction or (2) node parameter.
Exploits (2)
exploitdb
WORKING POC
VERIFIED
by Daniel King · textwebappsjsp
https://www.exploit-db.com/exploits/33346
exploitdb
WORKING POC
VERIFIED
by Daniel King · textwebappsjsp
https://www.exploit-db.com/exploits/10061
References (9)
Scores
EPSS
0.0592
EPSS Percentile
90.5%
Classification
CWE
CWE-79
Status
published
Affected Products (4)
mcafee/intrushield_network_security_manager
< 5.1.7.74
mcafee/intrushield_network_security_manager
mcafee/intrushield_network_security_manager
n/a/n/a
Timeline
Published
Nov 13, 2009
Tracked Since
Feb 18, 2026