Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-2861 (site_composer)

BugsAlert Home > CVE-2008-2861 (site_composer)
 
 

Multiple cross-site scripting (XSS) vulnerabilities in eLineStudio Site Composer (ESC) 2.6 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) topic and (2) button parameters to ansFAQ.asp and the (3) id and (4) txtEmail parameters to login.asp.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-2861

Learn more about CVE-2008-2861 (site_composer)
 
Tags: cve-2008-2861 site composer

Related Items

      Debian update for clamav

      Microsoft Security Advisory (912920): Systems that are infected with Win32/Sober.Z@mm may download and run malicious files from certain Web domains beginning on January 6, 2006 - 1/3/2006

      CVE-2008-1496 (Peel)

      CVE-2007-6254 (Business Objects)

      rPath Linux Security Update Fixes Rsync Security Bypass Vulnerabilities

      CVE-2008-4606 (ip_reg)

      WORM_SOHANAD.FM

 

Pixel