[] NeoSense

NetWin DBabble 2.5 i - Cross-Site Scripting

Author: dr_insane
type: webapps
platform: cgi
port: 
date_added: 2003-09-16 
date_updated: 2012-12-04 
verified: 1 
codes: OSVDB-2551 
tags: 
aliases:  
screenshot_url:  
application_url: 

source: https://www.securityfocus.com/bid/8637/info

A cross-site scripting problem has been reported in NetWin DBabble. This could make it possible for an attacker to potentially execute code in the security context of a site using the vulnerable software. This could be exploited by enticing a user to follow a malicious link to a site hosting the software.

http://www.example.com/dbabble?cmd="><evil_script>