S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
medium·Product Based Web Vulnerabilities·Updated Jan 3, 2024

CVE-2015-8349 Scanner

CVE-2015-8349 scanner - Cross-Site Scripting (XSS) vulnerability in SourceBans

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsurl
CostFree
2.9k
Times Used
continuous scan runs
3.9k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2015-8349
6.1
CVSS

Cross-site scripting (XSS) vulnerability in SourceBans before 2.0 pre-alpha allows remote attackers to inject arbitrary web script or HTML via the advSearch parameter to index.php.

Attack Vector
-
Privileges Req.
-
User Interaction
-
Affected
n/aby n/a
n/a
Updated Aug 22, 2026View on NVD →
Detail

SourceBans is a popular software application used to manage and monitor game servers. It is commonly used by server administrators to ban players who violate rules and regulations. This application is widely used by online gaming communities and is considered a vital tool for game server administrators.

CVE-2015-8349 is a serious security vulnerability that was detected in SourceBans. This vulnerability allows remote attackers to inject arbitrary web scripts or HTML directly into the software via the advSearch parameter in index.php. Hackers can exploit this vulnerability to steal sensitive user information, compromise server security, and cause major disruptions to online gaming communities.

When the CVE-2015-8349 vulnerability is exploited, attackers can execute a wide range of malicious activities. For starters, they can hijack user sessions and take full control of the server. This could lead to the theft of sensitive data, such as user names and passwords. Additionally, the attackers could install backdoors or malware on the server to carry out further attacks, putting the entire gaming community at risk.

At s4e.io, we specialize in helping organizations improve their cybersecurity posture. Our platform offers comprehensive vulnerability scans that can quickly identify vulnerabilities, such as CVE-2015-8349 and provide actionable recommendations to remediate them. By using our platform, gaming server administrators can protect their digital assets with ease, ensuring that their online communities are secure.

 

REFERENCES

Solution Advice

Fortunately, there are several precautions that gaming server administrators can take to prevent this vulnerability from being exploited. These include:

  • Keeping software up-to-date: Ensure that SourceBans is running on the latest version. Developers are regularly releasing patches to address known vulnerabilities.
  • Installing a web application firewall (WAF): A WAF can help filter out malicious traffic, such as cross-site scripting exploits.
  • Educating server administrators: It is important to educate server administrators about the risks of common security vulnerabilities, such as cross-site scripting.
  • Proper input validation and sanitization: Developers must ensure that the application correctly sanitizes user input to prevent malicious code injection.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.

CVE-2015-8349 scanner - Cross-Site Scripting (XSS) vulnerability in SourceBans | S4E