This application requires Javascript for optimal performance.

Chimera.Web.Portal.Multiple.Inputs.XSS

Release Date

Nov 09, 2011

Severity

medium

Impact

System Compromise: Remote attackers can gain control of vulnerable systems.

Description

This indicates an attack attempt to exploit a Cross Site Scripting vulnerability in Chimera Web Portal.

The vulnerability is a result of the application's failure to sanitize user supplied input. As a result, a remote attacker can execute arbitrary script code within the context of the application.

Affected Products

Chimera Web Portal Chimera Web Portal 0.2 and earlier versions.

Recommended Actions

Upgrade to the latest version available from the website.
http://sourceforge.net/projects/chimera/

Coverage

IPS
VCM

Common Vulnerabilities and Exposures (CVE)

CVE-2006-0136

Reference/s

http://www.securityfocus.com/bid/16113 (BugTraq)

Reference: VID-29821