|
Vulnerability Assessment & Network Security Forums |
|||||||||
If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important. If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery. Home >> Browse Vulnerability Assessment Database >> Debian Local Security Checks >> [DSA249] DSA-249-1 w3mmee Vulnerability Assessment Details
|
[DSA249] DSA-249-1 w3mmee |
||
DSA-249-1 w3mmee Detailed Explanation for this Vulnerability Assessment Hironori Sakamoto, one of the w3m developers, found two security vulnerabilities in w3m and associated programs. The w3m browser does not properly escape HTML tags in frame contents and img alt attributes. A malicious HTML frame or img alt attribute may deceive a user to send their local cookies which are used for configuration. The information is not leaked automatically, though. For the stable distribution (woody) these problems have been fixed in version 0.3.p23.3-1.5. Please note that the update also contains an important patch to make the program work on the powerpc platform again. The old stable distribution (potato) is not affected by these problems. For the unstable distribution (sid) these problems have been fixed in version 0.3.p24.17-3 and later. We recommend that you upgrade your w3mmee packages. Solution : http://www.debian.org/security/2003/dsa-249 Network Security Threat Level: High Networks Security ID: Vulnerability Assessment Copyright: This script is (C) 2005 Michel Arboi |
||
Cables, Connectors |
Cisco (SG100D-05-UK) 5-Ports External Ethernet Switch
$40.00
HP Procurve 2824 24 Gigabit Ports 10/100/1000 External Managed Switch J4903A
$74.99
8 Ports Unmanaged Industrial Ethernet Switch Network Gigabit Ethernet Switch
$76.50
Cisco Meraki MS120-48LP 48 Port Blade Ethernet Switch UNCLAIMED
$349.98
HP 2530-48G 48 Port Gigabit Ethernet Network Switch J9775A
$30.95
New Linksys SE3005 5-port Gigabit Ethernet Switch
$18.99
New 10/100 Mbps 8 Ports Fast Ethernet LAN Desktop RJ45 Network Switch Hub
$11.49
NetGear ProSafe GS748T V4 48-Port Gigabit Smart Switch w/ Ears + Cord
$30.00
Juniper Networks EX3300-48P 48-Port PoE+ 4x SFP+ Network Switch w/ Power Cord
$43.95
HP Aruba 2530-8G-PoE+ 8x PoE+ RJ45 2x SFP Gigabit Switch J9774A No AC Adapter
$37.99
|
||
No Discussions have been posted on this vulnerability. |