Unconfigured Ad Widget

Collapse

Anúncio

Collapse
No announcement yet.

Symantec Web Gateway 'l' Parâmetro de Cross Site Scripting

Collapse
X
 
  • Filter
  • Tempo
  • Show
Clear All
new posts

  • Font Size
    #1

    Symantec Web Gateway 'l' Parâmetro de Cross Site Scripting

    Symantec Web Gateway 'l' Parameter Cross Site Scripting Vulnerability


    Symantec Web Gateway is prone to a cross-site scripting vulnerability because it fails to properly sanitize user-supplied input.


    An attacker may leverage this issue to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may allow the attacker to steal cookie-based authentication credentials and launch other attacks.



    Attackers can exploit this issue by enticing an unsuspecting user to follow a malicious URI.


    The following example URIs are available:


    Apenas usuários registrados e ativados podem ver os links., Clique aqui para se cadastrar... src="myimage.jpg">&profile=40
    Apenas usuários registrados e ativados podem ver os links., Clique aqui para se cadastrar... src="myimage.jpg">&profile=40


    Apenas usuários registrados e ativados podem ver os links., Clique aqui para se cadastrar...
    sigpic




  • Font Size
    #2
    vi isso no 1337day.

    Shoow.

    Thanks ^^
    WhiteCollarGroup till I die
    MI5, MI6,NSA,FBI,Army, CIA,Navy,Air Force, Mossad, PF and all this shit can't stop me.

    Comment

    X
    Working...
    X