Check Point Reference: | CPAI-2011-580 |
Date Published: | 19 Mar 2012 |
Severity: | Medium |
Last Updated: | Wednesday 19 November, 2014 |
Source: | |
Industry Reference: | CVE-2011-0552 |
Protection Provided by: |
Security Gateway |
Who is Vulnerable? | |
Vulnerability Description | Multiple cross-site scripting vulnerabilities have been reported in Symantec IM Manager. The vulnerabilities are due to improper sanitization of URL parameters input by the IM Manager management console. A remote attacker could exploit these vulnerabilities by enticing users to click on a link containing a malicious script code. Successful exploitation will allow an attacker to execute script code in the browser of the target user. |
This protection will detect and block attempts to open URL links containing a malicious code.
In order for the protection to be activated, update your Security Gateway product to the latest IPS update. For information on how to update IPS, go to SBP-2006-05, click on Protection tab and select the version of your choice.
This protection's log will contain the following information:
Attack Name: Instant Messenger.
Attack Information: Symantec IM Manager Multiple Cross Site Scripting