CVE-2010-2734
Last modified
CVE-2010-2734 is a vulnerability of currently unknown severity. Cross-site scripting (XSS) vulnerability in the mobile portal in Microsoft Forefront Unified Access Gateway (UAG) 2010 Gold, 2010 Update 1, and 2010 Update 2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka "XSS Issue on UAG Mobile Portal Website in Forefront Unified Access Gateway Vulnerability.". EPSS estimates a 14.50% chance of exploitation in the next 30 days.
Description
Cross-site scripting (XSS) vulnerability in the mobile portal in Microsoft Forefront Unified Access Gateway (UAG) 2010 Gold, 2010 Update 1, and 2010 Update 2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka "XSS Issue on UAG Mobile Portal Website in Forefront Unified Access Gateway Vulnerability."
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | Forefront Unified Access Gateway | 2010 |
References
- http://www.us-cert.gov/cas/techalerts/TA10-313A.htmlUS Government Resource
- http://www.us-cert.gov/cas/techalerts/TA10-313A.htmlUS Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2010-2734?
How severe is CVE-2010-2734?
How do I fix CVE-2010-2734?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2010
- CVE-2010-2728Heap-based buffer overflow in Microsoft Outlook 2002 SP3, 20…
- CVE-2010-2729The Print Spooler service in Microsoft Windows XP SP2 and SP…
- CVE-2010-2730Buffer overflow in Microsoft Internet Information Services (…
- CVE-2010-2731Unspecified vulnerability in Microsoft Internet Information …
- CVE-2010-2732Open redirect vulnerability in the web interface in Microsof…
- CVE-2010-2733Cross-site scripting (XSS) vulnerability in the Web Monitor …
- CVE-2010-2735Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2010-2736Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2010-2737Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2010-2738The Uniscribe (aka new Unicode Script Processor) implementat…
- CVE-2010-2739Buffer overflow in the CreateDIBPalette function in win32k.s…
- CVE-2010-2740The OpenType Font (OTF) format driver in Microsoft Windows X…
Are you affected by CVE-2010-2734?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
