Novell iChain Web Server Failed...

- AV AC AU C I A
发布: 2004-01-13
修订: 2025-04-13

It has been reported that Novell iChain Server may be prone to a cross-site scripting vulnerability that may allow a remote user to launch cross-site scripting attacks. The problem is reported to exist due to improper sanitizing of user-supplied data in the 'url=' parameter passed to the failed login page. Successful exploitation of this attack may allow an attacker to steal cookie-based authentication credentials. Other attacks are also possible.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息