Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.10815
Category:Web Servers
Title:Web Server Cross Site Scripting
Summary:The remote web server seems to be vulnerable to a cross-site; scripting (XSS) vulnerability.
Description:Summary:
The remote web server seems to be vulnerable to a cross-site
scripting (XSS) vulnerability.

Vulnerability Insight:
The vulnerability is caused by the result being returned to the
user when a non-existing file is requested (e.g. the result contains script code provided in the
request).

Vulnerability Impact:
This vulnerability would allow an attacker to make the server present the
user with the attacker's JavaScript/HTML code.

Since the content is presented by the server, the user will give it the trust level of the server (for example,
the websites banks, shopping centers, etc. would usually be trusted by a user).

Solution:
See the references for various background information.

CVSS Score:
4.3

CVSS Vector:
AV:N/AC:M/Au:N/C:N/I:P/A:N

CopyrightCopyright (C) 2005 SecuriTeam, modified by Chris Sullo and Andrew Hintz

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.