Käynnissä

Site Failing Security Test. Need Fix to pass. Scripting prob

Hello. My site has failed a recent security test from Security Metrics. I am copying an email sent to me describing how to fix the issue to achieve a passing report. I will also attach a copy of the report. I need the site fixed so that the site gets a passing grade.

Please take a look.

-------------------------------------------------------------------------------

Possible cross site scripting on

[url removed, login to view] [url removed, login to view]

<https://combinedenergyservices.com/achpay_check.php> Use the following

commands to verify this: wp --inject

"[url removed, login to view]

[url removed, login to view]

t%3Ealert%28123%29%3C%2Fscript%3E&city="

<[url removed, login to view];city=%22>

POST curl -L -k -d "routing_number=%22%3E%3Cscript%3Ealert%2

8123%29%3C%2Fscript%3E&city=" "[url removed, login to view]

ay_check.php"|

<[url removed, login to view]%7C> grep "123"

This website may have other injection related vulnerabilities.

Typically, with cross site scripting, you will want to make sure that

the page source being returned by the web server is properly validated

and that we are not seeing any injected scripts returning unsanitized in

the page source. You will need to make sure that all user input is

properly validated.

[url removed, login to view]

[url removed, login to view]

----------------------------------------------------------------------------

the site is located at:

[url removed, login to view]

Please Help.

Taidot: Tietoturva

Näytä lisää: pass security metrics test, grep 123 injection fix, you and ibm, test user, s.i.s. security, microsoft computer fix website, l want make web, lt security, ibm user, ibm email, ibm com, ibm at, how to fix com, 3c test, fix possible cross site scripting security metrics, cross site scripting test inject, test https, take a test, https test, how to take a test, website security test, web test, we security, vulnerabilities, User test

Tietoa työnantajasta:
( 283 arvostelua ) hamlin, United States

Projektin tunnus: #477840

Myönnetty käyttäjälle:

raver

As discussed.

70 $ USD 1 päivässä
(1 arvostelu)
1.7