cbcvebase.
CVE-2008-0539
published 2008-02-01

CVE-2008-0539: Cross-site scripting (XSS) vulnerability in dms/policy/rep_request.php in F5 BIG-IP Application Security Manager (ASM) 9.4.3 allows remote attackers to inject…

PriorityP423medium4.3CVSS 2.0
AVNACMAuNCNIPAN
EXPLOIT
EPSS
7.21%
93.6th percentile
Cross-site scripting (XSS) vulnerability in dms/policy/rep_request.php in F5 BIG-IP Application Security Manager (ASM) 9.4.3 allows remote attackers to inject arbitrary web script or HTML via the report_type parameter.

Affected

3 ranges
VendorProductVersion rangeFixed in
f5big-ip_application_security_manager
f5big-ip_application_security_manager>= 9.2.0 < 9.2.59.2.5
f5big-ip_application_security_manager>= 9.4.0 < 9.4.49.4.4
CVEs like this are exactly what “Exploited This Week” covers.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.