Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-0925 (eDirectory)

BugsAlert Home > CVE-2008-0925 (eDirectory)
 
 

Cross-site scripting (XSS) vulnerability in the iMonitor interface in Novell eDirectory 8.7.3.x before 8.7.3 sp10, and 8.8.x before 8.8.2 ftf2, allows remote attackers to inject arbitrary web script or HTML via unspecified parameters that are used within "error messages of the HTTP stack."




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-0925

Learn more about CVE-2008-0925 (eDirectory)
 
Tags: cve-2008-0925 edirectory

Related Items

      FrSIRT - Debian Security Update Fixes FreeType Code Execution Vulnerabilities

      CVE-2008-2357

      CVE-2008-0632 (LightBlog)

      rPath update for am-utils

      Trojan-Spy.Win32.Montp.p

      CVE-2008-4281 (esx, esxi)

      FrSIRT - Sun Solaris Asian Language Input Methods Data Manipulation Vulnerability

 

Pixel