Trend Micro InterScan Messaging Security Suite Cross-site Scripting (CVE-2012-2995)
| Check Point Reference: | CPAI-2012-787 | |
| Date Published: | ||
| Severity: | ||
| Source: | Secunia Advisory SA50620 | |
| Industry Reference(s): | CVE-2012-2995 |
|
| Protection Provided by: |
Security Gateway
|
|
|
Who is Vulnerable? Trend Micro InterScan Messaging Security Suite |
||
| Vulnerability Description A cross-site-scripting vulnerability has been reported in Trend Micro InterScan Messaging Security Suite. |
||
|
Vulnerability Details The vulnerability is due to insufficient sanitization of HTTP request parameters. A remote attacker could exploit this vulnerability by enticing a target user to open a specially crafted link. Successful exploitation could allow an attacker to execute script code in the browser security context of the affected application. |
Protection Overview
This protection will detect and block malicious cross-site-scripting in Trend Micro InterScan Messaging Security Suite.
To configure the defense, select your product from the list below and follow the related protection steps.