Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2007-6270 (Absolute News Manager.NET)

BugsAlert Home > CVE-2007-6270 (Absolute News Manager.NET)
 
 

Multiple cross-site scripting (XSS) vulnerabilities in Absolute News Manager.NET 5.1 allow remote attackers to inject arbitrary web script or HTML via the (1) rmore parameter to xlaabsolutenm.aspx and the (2) template parameter to pages/default.aspx.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-6270

Learn more about CVE-2007-6270 (Absolute News Manager.NET)
 
Tags: cve-2007-6270 absolute news manager.net

Related Items

      FrSIRT - CKGold "item_id" Parameter Remote SQL Injection Vulnerability

      CVE-2008-2836 (WebCalendar)

      FrSIRT - rPath Security Update Fixes Lighttpd Denial of Service Vulnerability

      FrSIRT - MySQL Multiple Security Bypass and Denial of Service Vulnerabilities

      Citrix Access Gateway DNS Cache Poisoning

      CVE-2008-0092 (phpWebSite)

      Bugtraq: [SECURITY] [DSA 1576-2] New openssh packages fix predictable randomness

 

Pixel