vendor:
XSP
by:
5.5
CVSS
MEDIUM
Source code information-disclosure
CWE
Product Name: XSP
Affected Version From:
Affected Version To:
Patch Exists:
Related CWE:
CPE:
Platforms Tested:
XSP Source Code Information-Disclosure Vulnerability
XSP is prone to a source code information-disclosure vulnerability because it fails to properly sanitize user-supplied input. An attacker can exploit this vulnerability to retrieve arbitrary files from the vulnerable system in the context of the webserver process. Information obtained may aid in further attacks.