vulnerability

Out of Band Stored Cross-site scripting (XSS) - Out of Band Stored XSS, Common Parameters (no protocol specified)

Severity
10
CVSS
(AV:N/AC:L/Au:N/C:C/I:C/A:C)
Published
Jan 1, 2016
Added
Oct 1, 2016
Modified
Oct 1, 2016

Description

It has proven possible to execute a javascript file located on a remote server. Code vulnerable to out of band inclusion allows attackers to include remote hostile code and data to do such things as diverting users to fake sites and gathering sensitive information, or expose local code and data, allowing potentially devastating attacks.

Solution

outofbandstoredxss-ob-s-xss-r01
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.