CVE-2005-4502
CVE-2005-4502
Cross-site scripting (XSS) vulnerability in httprint v202, and possibly other versions before v301, allows remote attackers to inject arbitrary web script or HTML via the Server field in an HTTP response, which is not sanitized before being displayed to the user.
Produtos afetados
n/a · n/aPoCs públicas encontradas — 1
exploitdbwww.exploit-db.com/exploits/26966não verificado⚠ Recursos públicos, para você avaliar a exposição de sistemas que controla ou está autorizado a testar. Teste apenas com autorização.
Quer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
http://lists.grok.org.uk/pipermail/full-disclosure/2005-December/040532.htmlhttp://net-square.com/httprint/#historyhttp://secunia.com/advisories/18208http://securitytracker.com/id?1015403https://exchange.xforce.ibmcloud.com/vulnerabilities/23885http://www.cybsec.com/vuln/CYBSEC_Security_Advisory_httprint_Multiple_Vulnerabilities.pdfhttp://www.securityfocus.com/archive/1/420101/100/0/threadedhttp://www.securityfocus.com/bid/16031http://www.vupen.com/english/advisories/2005/3070