PT-2007-2158 · Fenrir · Portable Sleipnir+1
Publicado
2007-02-04
·
Atualizado
2011-03-08
·
CVE-2007-0705
CVSS v2.0
7.5
Alta
| Vetor | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Sleipnir versions 2.49 and earlier
Portable Sleipnir versions 2.45 and earlier
Description
A cross-zone scripting issue allows remote attackers to bypass Web content zone restrictions via certain scripts contained in RSS data.
Recommendations
For Sleipnir versions 2.49 and earlier, consider disabling the processing of scripts in RSS data until a patch is available.
For Portable Sleipnir versions 2.45 and earlier, restrict the execution of scripts from untrusted sources to minimize the risk of exploitation.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Portable Sleipnir
Sleipnir