Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2007-6633 (FAQMasterFlexPlus)

BugsAlert Home > CVE-2007-6633 (FAQMasterFlexPlus)
 
 

Multiple cross-site scripting (XSS) vulnerabilities in FAQMasterFlexPlus, possibly 1.5 or 1.52, allow remote attackers to inject arbitrary web script or HTML via (1) the cat_name parameter to faq.php; and unspecified parameters to the (2) add categories, (3) edit categories, (4) delete categories, (5) add faq, (6) edit faq, and (7) delete faq Admin scripts.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-6633

Learn more about CVE-2007-6633 (FAQMasterFlexPlus)
 
Tags: cve-2007-6633 faqmasterflexplus

Related Items

      IBM AIX Multiple Unspecified Vulnerabilities

      FrSIRT - X.org X11 Local Integer Overflow and Memory Corruption Vulnerabilities

      Fwknop - Port Knocking Tool with Single Packet Authorization

      CVE-2008-0582 (Skype)

      TROJ_BHO.OP

      Interspire Shopping Cart "search_query" Cross-Site Scripting

      FrSIRT - Trend Micro OfficeScan Multiple Remote Buffer Overflow Vulnerabilities

 

Pixel