Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2007-5403 (HelpBox)

BugsAlert Home > CVE-2007-5403 (HelpBox)
 
 

Multiple cross-site scripting (XSS) vulnerabilities in Layton HelpBox 3.7.1 allow remote authenticated users to inject arbitrary web script or HTML via the (1) Forename, (2) Surname, (3) Telephone, and (4) Fax fields to writeenduserenduser.asp; the (5) Filter field to statsrequestypereport.asp; and the (6) sys_request_id parameter to requestattach.asp; and allow remote authenticated users to inject arbitrary web script or HTML via the (7) Asset, (8) Location, and (9) Problem fields to editreq...




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-5403

Learn more about CVE-2007-5403 (HelpBox)
 
Tags: cve-2007-5403 helpbox

Related Items

      Bugtraq: ASPPortal Free Version (Topic_Id) Remote SQL Injection Vulnerability

      CVE-2007-6569 (Java Web Proxy Server, Java System Web Server)

      Mark Rasch: Mod Your iPhone – For Fun or Profit?

      CVE-2008-4047 (novell_forum)

      CVE-2008-3445 (phpMyRealty)

      PHP-Fusion "submit_info[]" SQL Injection Vulnerability

      68 Classifieds "cat" SQL Injection Vulnerability

 

Pixel