According to a CA advisory, "CA Service Desk contains multiple vulnerabilities that can allow a remote attacker to conduct cross-site scripting attacks. The vulnerabilities are due to insecure handling of passed variables in multiple web forms. An attacker, who can convince a user to click on a specially crafted link, can potentially conduct cross-site scripting attacks." Updates are available.
SecurityBlog is written by Network World Multimedia Editor Jason Meserve
The opinions expressed in this Weblog are those of the writer and may not represent the opinions of Network World.
|
|
Post new comment