This script is Copyright (C) 2006-2015 Tenable Network Security, Inc.
The remote web server contains CGI scripts that are vulnerable to
cross-site scripting attacks.
Sun Secure Global Desktop or Tarantella, a Java-based program for
web-enabling applications running on a variety of platforms, is
installed on the remote web server.
According to the version reported in one of its scripts, the
installation of the software on the remote host fails to sanitize
user-supplied input to several unspecified parameters before using it
to generate dynamic web content. An unauthenticated, remote attacker
may be able to leverage these issues to inject arbitrary HTML and
script code into a user's browser to be evaluated within the security
context of the affected website.
See also :
Upgrade to Sun Secure Global Desktop version 4.20.983 or later.
Risk factor :
Medium / CVSS Base Score : 6.8
CVSS Temporal Score : 6.5
Public Exploit Available : true
Family: CGI abuses : XSS
Nessus Plugin ID: 22495 ()
Bugtraq ID: 2013520276
CVE ID: CVE-2006-4958CVE-2006-4959
Upgrade to Nessus Professional today!
Start your free Nessus Cloud trial now!
Begin Free Trial
The cookie settings on this website are set to 'allow all cookies' to give you the very best website experience. If you continue without changing these settings, you consent to this - but if you want, you can opt out of all cookies by clicking below.