West Wind Web Connection is a tool for building Web applications using the
Visual FoxPro environment but is also Vulnerable to Cross-Site scripting
attacks. Admins need to password protect the application since its
installed
with out password on default. Also senatize the code to disallow xss
attacks
or javascript.
Hackers Center Security Group (http://www.hackerscenter.com)
Credit: Doz
Risk: Medium
Class: Cross Site Scripting
Remote: YES
Local: Yes
Vendor: West Wind Technologies http://www.west-wind.com
Product Version: All Versions
* Attackers can exploit these issues via a web client.
If you have additional information or notice any errors regarding this security advisory, please use contact form or email us at info()securityreason()com.