Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.902313
Kategorie:General
Titel:Flock Browser Malformed Bookmark Cross site scripting Vulnerability
Zusammenfassung:This host is installed with Flock browser and is prone to cross; site scripting vulnerability.
Beschreibung:Summary:
This host is installed with Flock browser and is prone to cross
site scripting vulnerability.

Vulnerability Insight:
The flaw is due to malformed favourite imported from an HTML file,
imported from another browser, or manually created can bypass cross-origin
protection, which has unspecified impact and attack vectors.

Vulnerability Impact:
Successful exploitation will allow attackers to execute HTML code in the
context of the affected browser, potentially allowing the attacker to steal
cookie-based authentication credentials.

Affected Software/OS:
Flock versions 3.0 to 3.0.0.4093

Solution:
Upgrade to the Flock version 3.0.0.4094

CVSS Score:
4.3

CVSS Vector:
AV:N/AC:M/Au:N/C:N/I:P/A:N

Querverweis: BugTraq ID: 42556
Common Vulnerability Exposure (CVE) ID: CVE-2010-3202
http://www.securityfocus.com/bid/42556
Bugtraq: 20100914 [FLOCK-SA-2010-01] Flock Browser: A malformed favourite can bypass cross origin protection (XSS) (Google Search)
http://archives.neohapsis.com/archives/bugtraq/2010-09/0111.html
http://lostmon.blogspot.com/2010/08/flock-browser-3003989-malformed.html
CopyrightCopyright (C) 2010 Greenbone Networks GmbH

Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.