Arbitrary Web Script Injection Vulnerability in SNARE for Linux Agent Events Page
CVE-2011-5249 · MEDIUM Severity
AV:N/AC:M/AU:N/C:N/I:P/A:N
Cross-site scripting (XSS) vulnerability in the events page in the System iNtrusion Analysis and Reporting Environment (SNARE) for Linux agent before 1.7.0 allows remote attackers to inject arbitrary web script or HTML via a logged shell command.
Learn more about our Cis Benchmark Audit For Distribution Independent Linux.