WebCortex WebStores2000 Error.ASP跨站脚本攻击(XSS)漏洞

漏洞信息详情

WebCortex WebStores2000 Error.ASP跨站脚本攻击(XSS)漏洞

漏洞简介

WebCortex WebStores 2000 6.0的error.asp存在跨站脚本攻击(XSS)漏洞。远程攻击者可以借助Message_id参数以其他用户的身份执行任意脚本。

漏洞公告

It has been reported that the vendor has addressed this issue in the latest release of Webstores2000. This however has not been confirmed.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: vuldb@securityfocus.com .
@securityfocus.com>

参考网址

来源: XF
名称: webstores-error-xss(15254)
链接:http://xforce.iss.net/xforce/xfdb/15254

来源: BID
名称: 9693
链接:http://www.securityfocus.com/bid/9693

来源: BUGTRAQ
名称: 20040218 WebCortex Webstores2000 version 6.0 multiple security vulnerabilities
链接:http://marc.theaimsgroup.com/?l=bugtraq&m=107712159425226&w=2

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享