Summary
The remote host is missing an update to the system as announced in the referenced advisory.
Solution
Update your system with the appropriate patches or software upgrades.
http://www.securitytracker.com/alerts/2005/Feb/1013078.html http://www.vuxml.org/freebsd/673aec6f-1cae-11da-bc01-000e0c2e438a.html
Insight
The following package is affected: htdig
CVE-2005-0085
Cross-site scripting (XSS) vulnerability in ht://dig (htdig) before 3.1.6-r7 allows remote attackers to execute arbitrary web script or HTML via the config parameter, which is not properly sanitized before it is displayed in an error message.
Severity
Classification
-
CVE CVE-2005-0085 -
CVSS Base Score: 6.8
AV:N/AC:M/Au:N/C:P/I:P/A:P
Related Vulnerabilities