RSS   Vulnerabilities for 'Gosa plugin'   RSS

2017-02-13
 
CVE-2015-8771

 

 
The generate_smb_nt_hash function in include/functions.inc in GOsa allows remote attackers to execute arbitrary commands via a crafted password.

 
 
CVE-2014-9760

 

 
Cross-site scripting (XSS) vulnerability in the displayLogin function in html/index.php in GOsa allows remote attackers to inject arbitrary web script or HTML via the username.

 

 >>> Vendor: Gosa project 2 Products
Gosa plugin
GOSA


Copyright 2024, cxsecurity.com

 

Back to Top