Cross-Site Scripting Vulnerability in Infoblox DNS One
CVE-2004-0606

Currently unrated

Key Information:

Vendor

Infoblox

Vendor
CVE Published:
6 December 2004

What is CVE-2004-0606?

The Infoblox DNS One contains a cross-site scripting (XSS) vulnerability, allowing remote attackers to execute arbitrary JavaScript code within the context of other users’ sessions. This issue can be exploited via specific DHCP request parameters, such as CLIENTID or HOSTNAME, leading to potential security breaches and unauthorized actions executed in users' browsers.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.