header-logo
Suggest Exploit
vendor:
Error Manager
by:
SecurityFocus
4.3
CVSS
MEDIUM
Cross-site Scripting, Information Disclosure, HTML Injection
79, 200, 438
CWE
Product Name: Error Manager
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: N/A
Related CWE: N/A
CPE: N/A
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2002

Error Manager Multiple Vulnerabilities

Error Manager is prone to multiple vulnerabilities due to failure to validate user input, failure to handle exceptional conditions and simple design errors. These issues may be leveraged to carry out cross-site scripting attacks, reveal information about the application configuration and initiate HTML injection attacks against the affected system. An example of a cross-site scripting attack is provided in the source.

Mitigation:

Validate user input, handle exceptional conditions, and ensure proper design of the application.
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/9911/info

It has been reported that Error Manager is prone to multiple vulnerabilities. These issues are due to failure to validate user input, failure to handle exceptional conditions and simple design errors.

These issues may be leveraged to carry out cross-site scripting attacks, reveal information about the application configuration and initiate HTML injection attacks against the affected system.

http://www.example.com/nuke71/error.php?newlang=foobar