Vulnerability record · CVE-2011-3339 · published 17 December 2011
CVE-2011-3339: 7t igss cross-site scripting vulnerability
77t · Igss
Cross-site scripting (XSS) vulnerability in the Admin Control Center in Sentinel HASP Run-time Environment 5.95 and earlier in SafeNet Sentinel HASP (formerly Aladdin HASP SRM) run-time installer before 6.x and SDK before 5.11, as used in 7 Technologies (7T) IGSS 7 and other products, when Firefox 2.0 is used, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors that trigger write access to a configuration file.
Description
Cross-site scripting (XSS) vulnerability in the Admin Control Center in Sentinel HASP Run-time Environment 5.95 and earlier in SafeNet Sentinel HASP (formerly Aladdin HASP SRM) run-time installer before 6.x and SDK before 5.11, as used in 7 Technologies (7T) IGSS 7 and other products, when Firefox 2.0 is used, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors that trigger write access to a configuration file.
AV:N/AC:M/Au:N/C:N/I:P/A:N
Affected products
3 vulnerable configurations from NVD's CPE data, grouped by vendor and product.
References
| Link | Tags |
|---|---|
| http://www.safenet-inc.com/support-downloads/sentinel-drivers/CVE-2011-3339/ | Vendor Advisory |
| http://www.securityfocus.com/bid/51028 | |
| http://www.us-cert.gov/control_systems/pdf/ICSA-11-314-01.pdf | Third Party AdvisoryUS Government Resource |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/71789 | |
| http://www.safenet-inc.com/support-downloads/sentinel-drivers/CVE-2011-3339/ | Vendor Advisory |
| http://www.securityfocus.com/bid/51028 | |
| http://www.us-cert.gov/control_systems/pdf/ICSA-11-314-01.pdf | Third Party AdvisoryUS Government Resource |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/71789 |
Track CVE-2011-3339 inside VULONE
Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.
Related vulnerabilities
Same products first, then exploited flaws of the same weakness class.
Source: NIST National Vulnerability Database (record CVE-2011-3339), CISA KEV, FIRST EPSS (scores of 2026-10-05). This page is refreshed as NVD updates the record.