Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2010-4976

Overview

Vulnerability Score 4.3 4.3
CVE Id CVE-2010-4976
Last Modified 13 Feb 2012 11:02:43
Published 01 Nov 2011 06:55:03
Confidentiality Impact NONE NONE
Integrity Impact PARTIAL PARTIAL
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity MEDIUM
Authentication NONE

CVE-2010-4976

Summary

Cross-site scripting (XSS) vulnerability in search/search.php in MetInfo 3.0 allows remote attackers to inject arbitrary web script or HTML via the searchword parameter (aka Search Box field). NOTE: some of these details are obtained from third party information.

Vulnerable Systems

Application

  • Metinfo 3.0


References

XF - metinfo-search-xss(59853)

BID - 41203

MISC - http://www.packetstormsecurity.com/1006-exploits/metinfo-xss.txt

SECUNIA - 40402

OSVDB - 65839

SREASON - 8488


Last Updated: 27 May 2016 10:58:14