Secunia Logo
 
CVE Reference: CVE-2007-6316
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2007-6316

Description:
Cross-site scripting (XSS) vulnerability in BarracudaDrive Web Server before 3.8 allows remote attackers to inject arbitrary web script or HTML via the URI path in an HTTP GET request, which is activated by administrators viewing log files via the Trace page.

CVE Status:
Candidate

References:

SREASON
  http://securityreason.com/securityalert/3434

SAID
  Secunia Advisory: SA28032

MISC
  http://aluigi.altervista.org/adv/barradrive-adv.txt

BUGTRAQ
  http://www.securityfocus.com/archive/1/archive/1/484833/100/0/threaded

BID
  26805


Return to the previous page.