NetWin DBabble 2.5 i - Cross-Site Scripting
Author: dr_insane
type: webapps
platform: cgi
port:
date_added: 2003-09-16
date_updated: 2012-12-04
verified: 1
codes: OSVDB-2551
tags:
aliases:
screenshot_url:
application_url:
source: https://www.securityfocus.com/bid/8637/info
A cross-site scripting problem has been reported in NetWin DBabble. This could make it possible for an attacker to potentially execute code in the security context of a site using the vulnerable software. This could be exploited by enticing a user to follow a malicious link to a site hosting the software.
http://www.example.com/dbabble?cmd="><evil_script>