ESET Remote Administrator < 3.0.105 Additional Report Settings XSS

This script is Copyright (C) 2009-2015 Tenable Network Security, Inc.

Synopsis :

The remote Windows host contains an application that is affected by an
HTML injection vulnerability.

Description :

ESET Remote Administrator is installed on the remote system. The
installed version is less than version 3.0.105, and such versions are
reportedly affected by an HTML injection vulnerability. An attacker
can exploit this vulnerability to cause arbitrary HTML and script code
to be executed with in the context of the user's browser.

See also :

Solution :

Upgrade to version 3.0.105.

Risk factor :

Medium / CVSS Base Score : 4.3
CVSS Temporal Score : 3.6
Public Exploit Available : true

Family: CGI abuses : XSS

Nessus Plugin ID: 35611 (eset_ra_3_0_105_html_injection.nasl)

Bugtraq ID: 33633


Ready to Amp Up Your Nessus Experience?

Get Nessus Professional to scan unlimited IPs, run compliance checks & more

Buy Nessus Professional Now