Vulnerabilities > CVE-2005-4567 - Unspecified vulnerability in Floosietek Ftgate 4.4Build4.4.000
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN floosietek
nessus
Summary
Multiple cross-site scripting (XSS) vulnerabilities in FTGate Technology (formerly known as Floosietek) FTGate 4.4 (Build 4.4.000 Oct 26 2005) allow remote attackers to inject arbitrary web script or HTML by sending (1) the href parameter to index.fts, or the param1 parameter to (2) /domains/index.fts, (3) /config/licence.fts, or (4) /config/systemacl.fts.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Nessus
NASL family | CGI abuses |
NASL id | FTGATE_44002.NASL |
description | The remote host appears to be running a version of FTGate, a commercial groupware mail server for Windows from FTGate Technology Ltd. The web server used to administer FTGate on the remote host fails to sanitize input to the |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 20337 |
published | 2005-12-21 |
reporter | This script is Copyright (C) 2005-2018 and is owned by Tenable, Inc. or an Affiliate thereof. |
source | https://www.tenable.com/plugins/nessus/20337 |
title | FTGate <= 4.4.002 Multiple Remote Vulnerabilities (OF, FS, XSS) |
code |
|
References
- http://archives.neohapsis.com/archives/fulldisclosure/2005-12/1015.html
- http://archives.neohapsis.com/archives/fulldisclosure/2005-12/1015.html
- http://securitytracker.com/id?1015399
- http://securitytracker.com/id?1015399
- http://www.osvdb.org/22104
- http://www.osvdb.org/22104
- http://www.osvdb.org/22105
- http://www.osvdb.org/22105
- http://www.osvdb.org/22106
- http://www.osvdb.org/22106
- http://www.osvdb.org/22107
- http://www.osvdb.org/22107
- http://www.securityfocus.com/bid/15972
- http://www.securityfocus.com/bid/15972
- http://www.vupen.com/english/advisories/2005/3010
- http://www.vupen.com/english/advisories/2005/3010