Google.Appliance.ProxyStyleSheet.Command.Execution

description-logoDescription

This indicates a possible Cross-site scripting exploit targetting the Google Mini Search applicance.
The Google Mini Search Appliance, and possibly Google Search Appliance may allow remote attackers to inject arbitrary Javascript, and possibly other web script or HTML, via a proxystylesheet variable that contains a malicious XSLT style sheet.

affected-products-logoAffected Products

Google Search Appliance and Google Mini Search Appliance.

Impact logoImpact

Compromise of the system.

recomended-action-logoRecommended Actions

The vendor has released advisory GA-2005-08-m to address this issue, apply appropriate patch from the vendor.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)