SWSoft Confixx Pro Tools_Ftp_Pwaendern.PHP Cross-Site Scripting Vulnerability
BID:18523
CVE-2006-3179 |Info
SWSoft Confixx Pro Tools_Ftp_Pwaendern.PHP Cross-Site Scripting Vulnerability
| Bugtraq ID: | 18523 |
| Class: | Input Validation Error |
| CVE: |
CVE-2006-3179 |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 19 2006 12:00AM |
| Updated: | Jul 06 2016 01:33PM |
| Credit: | p0w3r discovered this issue. |
| Vulnerable: |
SWSoft Confixx Pro 3 |
| Not Vulnerable: | |
Discussion
SWSoft Confixx Pro Tools_Ftp_Pwaendern.PHP Cross-Site Scripting Vulnerability
SWSoft Confixx Pro is affected by a cross-site scripting vulnerability.
An attacker may leverage this issue to have arbitrary script code run in the browser of an unsuspecting user in the context of the affected site. This may help the attacker steal cookie-based authentication credentials and launch other attacks.
SWSoft Confixx Pro is affected by a cross-site scripting vulnerability.
An attacker may leverage this issue to have arbitrary script code run in the browser of an unsuspecting user in the context of the affected site. This may help the attacker steal cookie-based authentication credentials and launch other attacks.
Exploit / POC
SWSoft Confixx Pro Tools_Ftp_Pwaendern.PHP Cross-Site Scripting Vulnerability
An attacker may exploit this issue with a web browser.
An attacker may exploit this issue with a web browser.
Solution / Fix
SWSoft Confixx Pro Tools_Ftp_Pwaendern.PHP Cross-Site Scripting Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
References
SWSoft Confixx Pro Tools_Ftp_Pwaendern.PHP Cross-Site Scripting Vulnerability
References:
References:
- Confixx Homepage (SWSoft)