about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , 3Com OfficeConnect Secure Router Tk Parameter Cross Site Scripting Vulnerability


Title 3Com OfficeConnect Secure Router Tk Parameter Cross Site Scripting Vulnerability
Published 2007-06-08-12:00AM
Updated 2007-06-08-12:00AM
Class Input Validation Error
CVE   CVE-2006-3974
Remote  Yes
Local  No
Credit  Secunia Research is credited with the discovery of this vulnerability
Vulnerable  3Com OfficeConnect Secure Router 1.04168
Not Vulnerable  
Code   To exploit this issue, an attacker must entice an unsuspecting victim into following a malicious URI.

The following proof-of-concept URI is available:

http://example.com/cgi-bin/admin?page=1&tk=>[xss]
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Sat, 10 Jan 2009 02:00:25 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
www.trish booly wood Daondload freedownlo Gamez XXX Kerala sex Sexindingi localhost Pervert! mambo Remo porno gay mhotties.c Cucas www.yazum. exploits p WiLdBoY xvideos.co news for c tallsex 89_com_sex pinkworld. briana evi d21 shoutb Cloudia se sexgam 200 /compo Kamal proftp 1.2 APBoard ISC Bind 9 Alba www.google ent.kmdail CMS is Fre Miaby bouncing b sextit xxxsexyvid mambo Remo free porn WWW.SNUFFX wwohi8y8 tytjtujyjg sixteen MS06-074 irantv.com malika ser wetbooty irantv.com xxmove