Summary
The host is running LiveZilla and is prone to Cross-Site Scripting Vulnerabilities.
Impact
Successful exploitation could allow remote attackers to execute arbitrary HTML and script code in a user's browser session in the context of an affected site.
Impact Level: Application.
Solution
Apply patch from the below link,
http://www.securityfocus.com/archive/1/archive/1/508613/100/0/threaded
*****
NOTE : Ignore this warning, if above mentioned patch is applied already.
*****
Insight
Input passed to the 'lat', 'lng', and 'zom' parameters in 'map.php' is not properly sanitised before being returned to the user.
Affected
LiveZilla Version 3.1.8.3 and prior on all running platform.
References
Updated on 2015-03-25
Severity
Classification
-
CVE CVE-2009-4450 -
CVSS Base Score: 4.3
AV:N/AC:M/Au:N/C:N/I:P/A:N
Related Vulnerabilities