|Category:||Web application abuses|
|Title:||PHP Server Monitor Multiple Stored Cross-Site Scripting Vulnerabilities|
|Summary:||Check if PHP Server Monitor is vulnerable to Cross-Site Scripting|
Overview: This host is installed with PHP Server Monitor and is prone to
multiple stored cross-site scripting vulnerabilities.
The flaws are due improper validation of user-supplied input passed via the
'label' and 'name' parameter to 'index.php', that allows attackers to execute
arbitrary HTML and script code on the web server.
Successful exploitation will allow the attacker to execute arbitrary code in
the context of an application.
Impact Level: Application
PHP Server Monitor version 2.0.1 and prior
Fix: No solution or patch is available as of 22nd November, 2012. Information
regarding this issue will be updated once the solution details are available.
For updates refer to http://sourceforge.net/projects/phpservermon/
|Copyright||Copyright (C) 2012 Greenbone Networks GmbH|
|This is only one of 40037 vulnerability tests in our test suite. Find out more about running a complete security audit.|
To run a free test of this vulnerability against your system, register below.