Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
146377 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.51705
Categoría:CGI abuses
Título:WebCalendar XSS, authentication flaws
Resumen:NOSUMMARY
Descripción:Description:

The remote host has a version of WebCalendar installed
vulnerable to multiple vulnerabiliities. Problems include
multiple cross-site scripting vulnerabilities, an HTTP
response splitting vulnerability and multiple authentication
bypass vulnerabilities.

Solution : Upgrade to version 0.9.45 or later.

Risk factor : High

CVSS Score:
7.5

Referencia Cruzada: BugTraq ID: 11651
Common Vulnerability Exposure (CVE) ID: CVE-2004-1510
http://www.securityfocus.com/bid/11651
Bugtraq: 20041109 Multiple Vulnerabilities in WebCalendar (Google Search)
http://marc.info/?l=bugtraq&m=110011618724455&w=2
http://secunia.com/advisories/13164
XForce ISS Database: webcalendar-scripts-gain-access(18030)
https://exchange.xforce.ibmcloud.com/vulnerabilities/18030
Common Vulnerability Exposure (CVE) ID: CVE-2004-1509
XForce ISS Database: webcalendar-encodedlogin-path-disclosure(18029)
https://exchange.xforce.ibmcloud.com/vulnerabilities/18029
Common Vulnerability Exposure (CVE) ID: CVE-2004-1508
XForce ISS Database: webcalendar-init-file-include(18028)
https://exchange.xforce.ibmcloud.com/vulnerabilities/18028
Common Vulnerability Exposure (CVE) ID: CVE-2004-1507
XForce ISS Database: webcalendar-response-splitting(18027)
https://exchange.xforce.ibmcloud.com/vulnerabilities/18027
Common Vulnerability Exposure (CVE) ID: CVE-2004-1506
XForce ISS Database: webcalendar-img-src-xss(18026)
https://exchange.xforce.ibmcloud.com/vulnerabilities/18026
CopyrightCopyright (c) 2005 E-Soft Inc. http://www.securityspace.com

Esta es sólo una de 146377 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.