Description
MySource Matrix after 3.8 allows remote attackers to use the application as an HTTP proxy server via a MIME encoded URL in the sq_content_src parameter to access arbitrary sites with the server's IP address and conduct cross-site scripting (XSS) attacks. NOTE: the researcher reports that "The vendor does not consider this a vulnerability.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T19:32:22.920Z
Reserved: 2006-09-27T00:00:00.000Z
Link: CVE-2006-5037
No data.
Status : Modified
Published: 2006-09-27T23:07:00.000
Modified: 2026-04-23T00:35:47.467
Link: CVE-2006-5037
No data.
OpenCVE Enrichment
No data.
Weaknesses