Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2007-6365 (Event Calendar)

BugsAlert Home > CVE-2007-6365 (Event Calendar)
 
 

Cross-site scripting (XSS) vulnerability in modules/ecal/display.php in the Event Calendar in bcoos 1.0.10 allows remote attackers to inject arbitrary web script or HTML via the month parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. NOTE: the day and year vectors are covered by CVE-2007-6274.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-6365

Learn more about CVE-2007-6365 (Event Calendar)
 
Tags: cve-2007-6365 event calendar

Related Items

      Spam Spans New Artistic Heights

      Debian: New libimager-perl packages fix arbitrary code execution

      CVE-2008-3441 (Winamp)

      Sun Solaris NFSv4 Client Kernel Module Denial of Service

      EMC Control Center SAN Manager SST_SENDFILE Remote File Retrieval Vulnerability

      Mozilla Firefox 3 Download Day Sets Official Guinness World Record

      CVE-2008-4912 (fotogalerie)

 

Pixel