Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
146377 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.19587
Categoría:Web application abuses
Título:ATutor Cross Site Scripting Vulnerability
Resumen:The remote version of ATutor is prone to cross-site scripting; attacks due to its failure to sanitize user-supplied input.
Descripción:Summary:
The remote version of ATutor is prone to cross-site scripting
attacks due to its failure to sanitize user-supplied input.

Solution:
No known solution was made available for at least one year since the
disclosure of this vulnerability. Likely none will be provided anymore. General solution options are to
upgrade to a newer release, disable respective features, remove the product or replace the product by another
one.

CVSS Score:
4.3

CVSS Vector:
AV:N/AC:M/Au:N/C:N/I:P/A:N

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2005-2649
BugTraq ID: 14598
http://www.securityfocus.com/bid/14598
Bugtraq: 20050818 ATutor 1.5.1 and prior multiple XSS Vulnerabilities (Google Search)
http://www.securityfocus.com/archive/1/408521
http://secunia.com/advisories/16496
XForce ISS Database: atutor-login-search-xss(21910)
https://exchange.xforce.ibmcloud.com/vulnerabilities/21910
CopyrightCopyright (C) 2005 Josh Zlatin-Amishav

Esta es sólo una de 146377 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.