Description
|
|
A vulnerability has been identified in RSA ACE/Agent for Web, which may be exploited by attackers to inject malicious HTML code. This flaw is due to an input validation error in the "webauthentication" script that does not properly filter a specially crafted "image" parameter, which may be exploited by attackers to cause arbitrary scripting code to be executed by the user's browser.
|