|
|
Info |
Last Modified |
| 8 months ago |
|
|
|
|
Description |
TUTOS 1.1 is vulnerable to Cross Site Scripting in the msg field of the file_select.php script. This could allow an attacker to execute JavaScript with the trust relationship between the client and server, and could allow sensitive information disclosure (i.e., HTTP cookies) or site modifications.
|
|
Classification |
Location:
Remote/Network Access Required
Attack Type:
Input Manipulation
Impact:
Loss of Integrity
OSVDB:
Web Related
|
|
Solution |
Upgrade to that latest CVS BRANCH-1-1 copy of TUTOS.
|
|
Products |
|
TUTOS
 |
1.1 |
|
|
|
|
|
|
|
Credit |
Unknown or Incomplete
|
|
BlogsProvided by Technorati
|
None found at this time
|
|
|