Microsoft Forefront Unified Access Gateway contains a flaw that allows spoofing or redirecting of traffic. This allows remote attackers to redirect targets to arbitrary sites, where the attacker may potentially acquire sensitive information, such as the user's credentials.
Classification
Location:
Local / Remote
Attack Type:
Input Manipulation
Impact:
Loss of Confidentiality
Solution:
Patch / RCS
Exploit:
Exploit Unknown
Disclosure:
Vendor Verified
OSVDB:
Web Related
Solution
Microsoft has released a patch to address this vulnerability.