|
|
Family: CGI abuses : XSS --> Category: infos
Sympa New List Cross Site Scripting Vulnerability Scan
Vulnerability Scan Summary Checks for sympa version
Detailed Explanation for this Vulnerability Test
The remote host seems to be running sympa, an open source mailing list software.
This version of Sympa contains an HTML injection vulnerability which may
allow a user who has the rights to create a new list to inject HTML
tags in the list description field.
See also : http://www.sympa.org/
Solution : Update to version 4.1.3 or newer.
Threat Level: Low
Click HERE for more information and discussions on this network vulnerability scan.
|