Required CVE Record Information
Description
Cross-site scripting (XSS) vulnerability in lua/host_details.lua in ntopng 1.1 allows remote attackers to inject arbitrary web script or HTML via the host parameter.
References 5 Total
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 5 Total
- https://svn.ntop.org/bugzilla/show_bug.cgi?id=379 x_transferred
- http://www.ntop.org/ndpi/released-ndpi-1-5-1-and-ntopng-1-2-1/ x_transferred
- http://packetstormsecurity.com/files/127329/Ntop-NG-1.1-Cross-Site-Scripting.html x_transferred
- exchange.xforce.ibmcloud.com: ntopng-host-xss(92135) vdb-entryx_transferred
- securityfocus.com: 66456 vdb-entryx_transferred