Family: CGI abuses --> Category: attack
Google Search Appliance proxystylesheet Parameter Multiple Vulnerabilities Vulnerability Scan
Vulnerability Scan Summary
Checks for proxystylesheet parameter multiple vulnerabilities in Google Search Appliance
Detailed Explanation for this Vulnerability Test
The remote web server is affected by multiple flaws.
The remote Google Search Appliance / Mini Search Appliance fails to
sanitize user-supplied input to the 'proxystylesheet' parameter, which
is used for customization of the search interface. Exploitation of
this issue may lead to arbitrary code execution (as an unprivileged
user), port scanning, file discovery, and cross-site scripting.
See also :
Contact Google for a fix.
Medium / CVSS Base Score : 4.9
Click HERE for more information and discussions on this network vulnerability scan.