Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2007-6465 (Ganglia)

BugsAlert Home > CVE-2007-6465 (Ganglia)
 
 

Multiple cross-site scripting (XSS) vulnerabilities in ganglia-web in Ganglia before 3.0.6 allow remote attackers to inject arbitrary web script or HTML via the (1) c and (2) h parameters to (a) web/host_gmetrics.php; the (3) G, (4) me, (5) x, (6) n, (7) v, (8) l, (9) vl, and (10) st parameters to (b) web/graph.php; and the (11) c, (12) G, (13) h, (14) r, (15) m, (16) s, (17) cr, (18) hc, (19) sh, (20) p, (21) t, (22) jr, (23) js, (24) gw, (25) z, and (26) gs parameters to (c) web/get_context...




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-6465

Learn more about CVE-2007-6465 (Ganglia)
 
Tags: cve-2007-6465 ganglia

Related Items

      FrSIRT - Oracle Products Multiple Code Execution and Security Bypass Issues

      CVE-2008-0565 (PHP Links)

      You should be aware of the threat.

      CVE-2008-1769 (VLC)

      CVE-2008-0905 (Globsy)

      World of Warcraft Fan Site Compromised

      Vuln: GOUAE DWD Realty Password Parameters SQL Injection Vulnerability

 

Pixel