CVE-2009-2631 describes a fundamental design flaw in multiple clientless SSL VPN products, including offerings from Cisco, SonicWALL, Stonesoft, and Juniper. When configured without domain restrictions, these VPNs rewrite remote URL content to appear from the VPN's domain, violating the same-origin policy. This allows attackers to perform cross-site scripting, steal cookies, access VPN sessions, and conduct other attacks. The vulnerability has a CVSS score of 6.8 (Medium), indicating a network-based attack with medium complexity and partial impact on confidentiality, integrity, and availability. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:h:aladdin:safenet_securewire_access_gateway:*:*:*:*:*:*:*:* | ||
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:h:cisco:adaptive_security_appliance:*:*:*:*:*:*:*:* | ||
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:h:sonicwall:e-class_ssl_vpn:*:*:*:*:*:*:*:* | ||
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:h:sonicwall:ssl_vpn:*:*:*:*:*:*:*:* | ||
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:h:stonesoft:stonegate:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:M/Au:N/C:P/I:P/A:P
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.