Bugtraq mailing list archives

Xymon monitor cross-site scripting vulnerabilities


From: Henrik Størner <henrik () hswn dk>
Date: Sun, 03 Apr 2011 12:15:12 +0200

Several cross-site scripting vulnerabilities have been identified in the Xymon systems- and network-monitoring tool available at http://sourceforge.net/projects/xymon/

All versions prior to 4.3.1 (released April 3, 2011) are vulnerable.

I would like to thank David Ferrest for notifying me of this issue.


Henrik Størner,
lead Xymon developer.


Current thread: