Posted by agotouning () libero it on Dec 11
CLOUD4WI SPLASH PORTAL Reflected XSS vulnerability
Quantum Leap Advisory: CLOUD4WI SPLASH PORTAL Reflected XSS vulnerability – Adivsory # CVE-2015-4699
Affected Product: CLOUD4WI SPLASH PORTAL
Credits: Vulnerability discovered by Agostino Parentela of Quantum Leap s.r.lExecutive SummaryUsing a specially crafted
HTTP request, it is possible to exploit a lack in the neutralization of the pages output which includes the user
submitted content….