According to Exploit.php CVE request: pnp4nagios – Two URL Cross-Site Scripting Vulnerabilities was found.
This vulnerability is caused by an input validation error in “views/kohana_error_page.php”. A remote attacker can send a specially crafted HTTP request to the vulnerable application and execute arbitrary html and scripting code in user`s browser in context of a vulnerable website.
Further exploitation of this vulnerability may result in stealing potentially sensitive to the user information, such as cookies, or disguising the information presented on the website.
0 टिप्पणियाँ:
एक टिप्पणी भेजें