Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-3849 (civic-cms)

BugsAlert Home > CVE-2008-3849 (civic-cms)
 
 

Cross-site scripting (XSS) vulnerability in the calendar controller in Civic Website Manager before 1.0.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, probably involving (1) month, (2) day, and (3) year fields.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-3849

Learn more about CVE-2008-3849 (civic-cms)
 
Tags: cve-2008-3849 civic-cms

Related Items

      Multiple Vulnerabilities in Microsoft Windows Components

      CVE-2008-2820 (open_azimyt_cms)

      Agares PhpAutoVideo 2.21(XSS/RFI) Multiple Remote Vulnerabilities

      Vuln: Rsync Use Chroot Insecure File Creation Vulnerability

      MS07-066 ? Important: Vulnerability in Windows Kernel Could Allow Elevation of Privilege (943078) - Version:1.2

      TROJ_AGENT.HMW

      CVE-2008-1428 (Ubercart Module)

 

Pixel