This application requires Javascript for optimal performance.

Foro.Domus.Escribir.PHP.XSS

Release Date

Nov 09, 2011

Severity

medium

Impact

System Compromise: Remote attackers can gain control of vulnerable systems.

Description

This indicates an attack attempt to exploit a Cross Site Scripting vulnerability in Foro Domus.

The vulnerability is a result of the application's failure to sanitize user supplied input. As a result, a remote attacker can execute arbitrary script code within the context of the application.

Affected Products

Foro Domus 2.10 and earlier versions.

Recommended Actions

Refer to the vendor's website for suggested workaround.
http://domus.sourceforge.net/

Coverage

IPS
VCM

Common Vulnerabilities and Exposures (CVE)

CVE-2006-0110

Reference/s

http://www.securityfocus.com/bid/16154 (BugTraq)

Reference: VID-29824