Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.101006
Kategorie:Windows : Microsoft Bulletins
Titel:Microsoft Security Bulletin MS06-056
Zusammenfassung:A cross-site scripting vulnerability exists in a server; running a vulnerable version of the .Net Framework 2.0 that could inject a client side; script in the user's browser.
Beschreibung:Summary:
A cross-site scripting vulnerability exists in a server
running a vulnerable version of the .Net Framework 2.0 that could inject a client side
script in the user's browser.

Vulnerability Impact:
The script could spoof content, disclose information,
or take any action that the user could take on the affected web site.

Solution:
Microsoft has released an update to correct this issue,
please see the reference for more information.

CVSS Score:
4.3

CVSS Vector:
AV:N/AC:M/Au:N/C:N/I:P/A:N

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2006-3436
BugTraq ID: 20337
http://www.securityfocus.com/bid/20337
CERT/CC vulnerability note: VU#455604
http://www.kb.cert.org/vuls/id/455604
HPdes Security Advisory: HPSBST02161
http://www.securityfocus.com/archive/1/449179/100/0/threaded
HPdes Security Advisory: SSRT061264
Microsoft Security Bulletin: MS06-056
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2006/ms06-056
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A377
http://securitytracker.com/id?1017029
http://secunia.com/advisories/22307
http://www.vupen.com/english/advisories/2006/3976
XForce ISS Database: asp-http-xss(28658)
https://exchange.xforce.ibmcloud.com/vulnerabilities/28658
CopyrightCopyright (C) 2009 Christian Eric Edjenguele

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.