Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-3201 (pagefusion)

BugsAlert Home > CVE-2008-3201 (pagefusion)
 
 

Multiple cross-site scripting (XSS) vulnerabilities in index.php in Pagefusion 1.5 allow remote attackers to inject arbitrary web script or HTML via the (1) acct_fname and (2) acct_lname parameters in an edit action, and the (3) PID, (4) PGID, and (5) rez parameters. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-3201

Learn more about CVE-2008-3201 (pagefusion)
 
Tags: cve-2008-3201 pagefusion

Related Items

      MS08-011 ? Important: Vulnerabilities in Microsoft Works File Converter Could Allow Remote Code Execution (947081) - Version:1.1

      CVE-2008-0383 (MyBB)

      SUSE update for kernel

      POSSIBLE_HAMWEQ

      CVE-2007-6178 (Easy Hosting Control Panel)

      FrSIRT - WSN Links Free "id" Parameter Remote SQL Injection Vulnerability

      MS08-010 - Critical: Cumulative Security Update for Internet Explorer (944533) - Version:1.0

 

Pixel