Symantec Web Gateway 'l' Parameter Cross Site Scripting Vulnerability
Attackers can exploit this issue by enticing an unsuspecting user to follow a malicious URI. The following example URIs are available: http://www.example.com/spywall/timer.php?d=4099&l=22665'<img src="myimage.jpg">&profile=40 http://www.example.com/spywall/timer.php?d=4099&l=<img src="myimage.jpg">&profile=40 |
Privacy Statement |