vendor:
SSL VPN
by:
Unknown
7.5
CVSS
HIGH
Input Validation
Unknown
CWE
Product Name: SSL VPN
Affected Version From: 4.2.1.6
Affected Version To: Unknown
Patch Exists: NO
Related CWE: Unknown
CPE: Unknown
Platforms Tested: Unknown
Unknown
Nortel SSL VPN Input Validation Vulnerability
The Nortel SSL VPN is prone to an input validation vulnerability that allows arbitrary commands to be executed on a user's computer. Cross-site scripting attacks are also possible.
Mitigation:
Unknown