- 34,644
- 0
- 18 Дек 2022
- EDB-ID
- 26778
- Проверка EDB
-
- Пройдено
- Автор
- DR_INSANE
- Тип уязвимости
- WEBAPPS
- Платформа
- JSP
- CVE
- cve-2005-4206
- Дата публикации
- 2005-12-12
Код:
source: https://www.securityfocus.com/bid/15814/info
Blackboard Academic Suite is prone to a cross-domain frameset-loading vulnerability.
Successful exploitation may result in various attacks, such as information disclosure and session hijacking. An attacker may also be able to exploit this vulnerability to carry out phishing-style attacks.
Blackboard Academic Suite version 6.0 is reportedly affected by this issue.
http://www.example.com/webapps/portal/frameset.jsp?tab_id=[tabid]&url=[url]
- Источник
- www.exploit-db.com