The host is missing a security update according to MFSA 2012-93. The update is required to fix cross-site scripting vulnerability. A flaw is present in the applications, which uses an incorrect context during the handling of JavaScript code that sets the location.href property. Successful exploitation allows remote attackers to conduct cross-site scripting (XSS) attacks or read arbitrary files by ...