OCS Inventory NG Unspecified HTML Injection Vulnerability
BID:50011
Info
OCS Inventory NG Unspecified HTML Injection Vulnerability
| Bugtraq ID: | 50011 |
| Class: | Input Validation Error |
| CVE: |
CVE-2011-4024 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 07 2011 12:00AM |
| Updated: | Apr 16 2015 06:14PM |
| Credit: | Nicolas Derouet |
| Vulnerable: |
OCS Inventory Team OCS Inventory NG Server 2.0.1 MandrakeSoft Enterprise Server 5 x86_64 MandrakeSoft Enterprise Server 5 |
| Not Vulnerable: |
OCS Inventory Team OCS Inventory NG Server 2.0.2 |
Solution / Fix
OCS Inventory NG Unspecified HTML Injection Vulnerability
Solution:
Updates are available. Please see the references for more information.
MandrakeSoft Enterprise Server 5 x86_64
MandrakeSoft Enterprise Server 5
Solution:
Updates are available. Please see the references for more information.
MandrakeSoft Enterprise Server 5 x86_64
-
Mandriva ocsinventory-reports-1.02.3-0.2mdvmes5.2.noarch.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva ocsinventory-server-1.02.3-0.2mdvmes5.2.noarch.rpm
http://www.mandriva.com/en/downloads/
MandrakeSoft Enterprise Server 5
-
Mandriva ocsinventory-reports-1.02.3-0.2mdvmes5.2.noarch.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva ocsinventory-server-1.02.3-0.2mdvmes5.2.noarch.rpm
http://www.mandriva.com/en/downloads/
References
OCS Inventory NG Unspecified HTML Injection Vulnerability
References:
References:
- OCS Inventory NG Homepage (OCS Inventory Team)
- OCS Inventory NG 2.0.1 Persistent XSS (CVE-2011-4024) (Nicolas DEROUET)