Summary
The remote host is missing an update to phpsysinfo announced via advisory DSA 724-1.
Solution
https://secure1.securityspace.com/smysecure/catid.html?in=DSA%20724-1
Insight
Maksymilian Arciemowicz discoverd several cross site scripting issues in phpsysinfo, a PHP based host information application.
For the stable distribution (woody) these problems have been fixed in version 2.0-3woody2.
For the testing (sarge) and unstable (sid) distribution these problems have been fixed in version 2.3-3.
We recommend that you upgrade your phpsysinfo package.
Severity
Classification
-
CVE CVE-2005-0870 -
CVSS Base Score: 4.3
AV:N/AC:M/Au:N/C:N/I:P/A:N
Related Vulnerabilities