Exploit BlackBoard Academic Suite 6.2.3.23 - Frameset.jsp Cross-Domain Frameset Loading

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
26778
Проверка EDB
  1. Пройдено
Автор
DR_INSANE
Тип уязвимости
WEBAPPS
Платформа
JSP
CVE
cve-2005-4206
Дата публикации
2005-12-12
Код:
source: https://www.securityfocus.com/bid/15814/info

Blackboard Academic Suite is prone to a cross-domain frameset-loading vulnerability.

Successful exploitation may result in various attacks, such as information disclosure and session hijacking. An attacker may also be able to exploit this vulnerability to carry out phishing-style attacks.

Blackboard Academic Suite version 6.0 is reportedly affected by this issue. 

http://www.example.com/webapps/portal/frameset.jsp?tab_id=[tabid]&url=[url]
 
Источник
www.exploit-db.com

Похожие темы