Summary
The remote host is running Metadot, a popular open source portal software.
Multiple vulnerabilities have been found in this product, which may allow a malicious user to inject arbitrary SQL commands, reveal valuable information about the server and perform Cross Site Scripting attacks.
Solution
Upgrade to the latest version of Metadot
Severity
Classification
-
CVSS Base Score: 7.5
AV:N/AC:L/Au:N/C:P/I:P/A:P
Related Vulnerabilities
- AWCM CMS Multiple Remote File Include Vulnerabilities
- AlienVault OSSIM SQL Injection and Remote Code Execution Vulnerabilities
- Atlassian JIRA FishEye and Crucible Plugins XML Parsing Unspecified Security Vulnerability
- Adobe ColdFusion Multiple Vulnerabilities-02 May-2014
- Andy's PHP Knowledgebase 'step5.php' Remote PHP Code Execution Vulnerability