漏洞信息详情
Icecast服务器状态显示跨站脚本漏洞
- CNNVD编号:CNNVD-200410-044
- 危害等级: 中危
- CVE编号:
CVE-2004-0781
- 漏洞类型:
跨站脚本
- 发布时间:
2004-10-20
- 威胁类型:
远程
- 更新时间:
2005-10-20
- 厂 商:
icecast - 漏洞来源:
Discovery of this … -
漏洞简介
Icecast内部网络服务器(icecast-server) 1.3.12版本及之前的版本中的list.cgi存在跨站脚本(XSS)漏洞。远程攻击者借助UserAgent参数注入任意web脚本。
漏洞公告
Debian has released advisory DSA 541-1 dealing with this issue. Please see the referenced advisory for more information.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: vuldb@securityfocus.com
Icecast Icecast 1.3.11
-
Debian icecast-server_1.3.11-4.2_alpha.debDebian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/i/icecast-server/icecast-
server_1.3.11-4.2_alpha.deb -
Debian icecast-server_1.3.11-4.2_arm.debDebian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/i/icecast-server/icecast-
server_1.3.11-4.2_arm.deb -
Debian icecast-server_1.3.11-4.2_hppa.debDebian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/i/icecast-server/icecast-
server_1.3.11-4.2_hppa.deb -
Debian icecast-server_1.3.11-4.2_i386.debDebian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/i/icecast-server/icecast-
server_1.3.11-4.2_i386.deb -
Debian icecast-server_1.3.11-4.2_ia64.debDebian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/i/icecast-server/icecast-
server_1.3.11-4.2_ia64.deb -
Debian icecast-server_1.3.11-4.2_m68k.debDebian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/i/icecast-server/icecast-
server_1.3.11-4.2_m68k.deb -
Debian icecast-server_1.3.11-4.2_mips.debDebian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/i/icecast-server/icecast-
server_1.3.11-4.2_mips.deb -
Debian icecast-server_1.3.11-4.2_mipsel.debDebian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/i/icecast-server/icecast-
server_1.3.11-4.2_mipsel.deb -
Debian icecast-server_1.3.11-4.2_powerpc.debDebian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/i/icecast-server/icecast-
server_1.3.11-4.2_powerpc.deb -
Debian icecast-server_1.3.11-4.2_s390.debDebian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/i/icecast-server/icecast-
server_1.3.11-4.2_s390.deb -
Debian icecast-server_1.3.11-4.2_sparc.debDebian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/i/icecast-server/icecast-
server_1.3.11-4.2_sparc.deb
参考网址
来源: XF
名称: icecast-list-useragent-xss(17086)
链接:http://xforce.iss.net/xforce/xfdb/17086
来源: BID
名称: 11021
链接:http://www.securityfocus.com/bid/11021
来源: DEBIAN
名称: DSA-541
链接:http://www.debian.org/security/2004/dsa-541
© 版权声明
文章版权归作者所有,未经允许请勿转载。
THE END