Computer Security
[EN] securityvulns.ru
no-pyccku



Multiple vulnerability scanners cross application scripting
updated since 25.07.2005
Published:22.12.2005
Source:ANONYMOUS
SecurityVulns ID:5030
Type:client
Level:5/10
Description:Unsafe data obtained during remote host scan is passed to Internet Explorer.
Affected:SPIDYNAMICS : WebInspect 5.0
 NSTALKER : N-Stealth 5.8
 NIKTO : Nikto 1.35
 HTTPRINT : httprint 202
Original documentdocumentMariano Nuñez Di Croce, [Full-disclosure] CYBSEC - Security Advisory: httprint Multiple Vulnerabilities (22.12.2005)
 documentMariano Nuñez Di Croce, CYBSEC - Multiple Vendor Web Vulnerability Scanner Arbitrary Script Injection Vulnerability (02.09.2005)
 documentSPIDYNAMICS, [Full-disclosure] SPIDynamics WebInspect Cross-ApplicationScripting (XAS) (29.07.2005)
 documentQQLan_(at)_yandex.ru, SPIDynamics WebInspect Cross-Application Scripting (XAS) (25.07.2005)
Files:SPI Dynamics WebInspect XAS PoC
 XSS - WEB = Cross-Applications Scripting
 SPI Dynamics WebInspect XAS screenshot
 SPI Dynamics WebInspect XAS report example
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Ðåéòèíã@Mail.ru