vendor:
LANSA aXes Web Terminal TN5250
by:
Unknown
7.5
CVSS
HIGH
Cross-Site Scripting (XSS)
79
CWE
Product Name: LANSA aXes Web Terminal TN5250
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: Unknown
Related CWE:
CPE: a:lansa:lansa_axes_web_terminal_tn5250
Platforms Tested: Unknown
Unknown
LANSA aXes Web Terminal TN5250 Cross-Site Scripting Vulnerability
The LANSA aXes Web Terminal TN5250 is vulnerable to a cross-site scripting (XSS) attack due to inadequate input sanitization. An attacker can exploit this vulnerability by injecting arbitrary script code into the browser of a victim user, potentially leading to the theft of authentication credentials and other malicious activities.
Mitigation:
To mitigate this vulnerability, it is recommended to implement proper input validation and sanitization techniques to prevent the execution of arbitrary script code.