Vulnerabilities > CVE-2005-3755 - Unspecified vulnerability in Google Mini Search Appliance and Search Appliance

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
google
nessus

Summary

Directory traversal vulnerability in Google Mini Search Appliance, and possibly Google Search Appliance, allows remote attackers to determine the existence of arbitrary files via a relative path from a style sheet directory, then comparing the resulting error messages.

Vulnerable Configurations

Part Description Count
Hardware
Google
2

Nessus

NASL familyCGI abuses
NASL idGOOGLE_SEARCH_APPLIANCE_PROXYSTYLESHEET.NASL
descriptionThe remote Google Search Appliance / Mini Search Appliance fails to sanitize user-supplied input to the
last seen2020-06-01
modified2020-06-02
plugin id20241
published2005-11-22
reporterThis script is Copyright (C) 2005-2018 Tenable Network Security, Inc.
sourcehttps://www.tenable.com/plugins/nessus/20241
titleGoogle Search Appliance proxystylesheet Parameter Multiple Remote Vulnerabilities (XSS, Code Exec, ID)