Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2007-6597 (iPortalX)

BugsAlert Home > CVE-2007-6597 (iPortalX)
 
 

Multiple cross-site scripting (XSS) vulnerabilities in IPortalX before Build 033 allow remote attackers to inject arbitrary web script or HTML via the (1) KW and (2) SF parameters to forum/login_user.asp, and (3) the Date parameter to blogs.asp.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-6597

Learn more about CVE-2007-6597 (iPortalX)
 
Tags: cve-2007-6597 iportalx

Related Items

      UNIX sockets kernel panic

      Vuln: OpenSSH ForceCommand Command Execution Weakness

      Fedora update for libxml2

      VU#827267: Microsoft Server Service RPC stack buffer overflow vulnerability

      CIO Reality Check: Linux Security

      VU Case Manager "default.asp" SQL Injection Vulnerabilities

      Fedora update for glib2

 

Pixel