vulnerability

Out of Band Cross-site scripting (XSS) - Out of Band XSS, Common Parameters (no protocol specified)

Severity
7
CVSS
(AV:N/AC:L/Au:N/C:P/I:P/A:N)
Published
2016-01-01
Added
2016-10-01
Modified
2016-10-01

Description

It has proven possible to execute a javascript file located on a remote server. Code vulnerable to out of band inclusion allows attackers to include remote hostile code and data to do such things as diverting users to fake sites and gathering sensitive information, or expose local code and data, allowing potentially devastating attacks.

Solution

outofbandxss-ob-xss-r01
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.