Arbitrary Web Script Injection Vulnerability in SNARE for Linux Agent Events Page

Arbitrary Web Script Injection Vulnerability in SNARE for Linux Agent Events Page

CVE-2011-5249 · MEDIUM Severity

AV:N/AC:M/AU:N/C:N/I:P/A:N

Cross-site scripting (XSS) vulnerability in the events page in the System iNtrusion Analysis and Reporting Environment (SNARE) for Linux agent before 1.7.0 allows remote attackers to inject arbitrary web script or HTML via a logged shell command.

Learn more about our Cis Benchmark Audit For Distribution Independent Linux.