vulnerability
Out of Band Stored Cross-site scripting (XSS) - Out of Band Stored XSS, Common Parameters (no protocol specified)
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
10 | (AV:N/AC:L/Au:N/C:C/I:C/A:C) | Jan 1, 2016 | Oct 1, 2016 | Oct 1, 2016 |
Severity
10
CVSS
(AV:N/AC:L/Au:N/C:C/I:C/A:C)
Published
Jan 1, 2016
Added
Oct 1, 2016
Modified
Oct 1, 2016
Description
It has proven possible to execute a javascript file located on a remote server. Code vulnerable to out of band inclusion allows attackers to include remote hostile code and data to do such things as diverting users to fake sites and gathering sensitive information, or expose local code and data, allowing potentially devastating attacks.
Solution
outofbandstoredxss-ob-s-xss-r01
References

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.