 |
|
|
Family: CGI abuses : XSS --> Category: attack
CuteNews show_news.php XSS Vulnerability Scan
Vulnerability Scan Summary Searches for the existence of an XSS bug in CuteNews
Detailed Explanation for this Vulnerability Test
Synopsis :
The remote web server contains several PHP scripts that are prone to
cross-site scripting attacks.
Description :
The installed version of CuteNews is vulnerable to cross-site scripting
attacks. A possible hacker may use this bug to steal the credentials of
legitimate users of this site.
See also :
http://www.securityfocus.com/archive/1/367289
Solution :
Upgrade to the latest version of this software.
Risk factor:
Low / CVSS Base Score : 2
(AV:R/AC:L/Au:NR/C:N/A:N/I:P/B:N)
Click HERE for more information and discussions on this network vulnerability scan.
|
|
|
|
|