Friday, May 28, 2010

Tenable Network Security XSS Vulnerability

Tenable Network Security provides a suite of solutions that unify real-time vulnerability, event and compliance monitoring into a single, role-based, interface for administrators, auditors and risk managers to evaluate, communicate and report needed information for effective decision making and systems management.


maybe :) but I have found Cross-site scripting (XSS),HTML injection and Redirect on support.tenablesecurity.com





















XSS Poc and Redirect still works but Tenable staff has been alerted !

Update: PaulDotCom:This has been fixed
nice,but anyway,check the mirror

No comments: