Tutos Multiple Vulnerabilities
High Nessus Network Monitor Plugin ID 2308
SynopsisThe remote web server contains a script that is vulnerable to SQL injection and cross-site scripting attacks.
DescriptionThe remote host is running a vulnerable version of Tutos. It is reported that Tutos 1.1.20040414 is prone to multiple input validation weaknesses. Due to insufficient user input validation, an attacker may carry out SQL injection or cross-site scripting attacks on this host.
SolutionUpgrade or patch according to vendor recommendations.