Movable Type < 5.02 Multiple Vulnerabilities
Medium Nessus Network Monitor Plugin ID 5535
SynopsisThe remote host is vulnerable to a cross-Site scripting (XSS) attack
DescriptionThe remote host is running Movable Type, a blogging software for Unix and Windows platforms. The installed version is earlier than 5.02. Such versions are reportedly affected by a cross-site scripting flaw. An attacker, exploiting this flaw, would be able to post script code which would be executed in the browser of the blog readers.
SolutionUpgrade to Movable Type 5.02 or later.