2010-09-21

ATutor

ソフト名:ATutor 1.0/2.0
回避策:Patch 07にて対応
脆弱性:XSS, 認証資格情報の奪取
ソース:
http://www.atutor.ca/atutor/
http://www.htbridge.ch/advisory/xss_vulnerability_in_atutor_edit_content_folder.html
http://www.htbridge.ch/advisory/xss_vulnerability_in_atutor_1.html
http://www.securityfocus.com/bid/43241
http://secunia.com/advisories/41468
危険性:Medium Risk

0 件のコメント:

コメントを投稿