Cross-site scripting (CSS) vulnerability in error.asp for Plumtree Corporate Portal 3.5 through 4.5 allows remote attackers to execute arbitrary script on other clients via the "Description" parameter.
Link | Tags |
---|---|
http://online.securityfocus.com/archive/82/248396 | mailing list vendor advisory |
http://www.iss.net/security_center/static/7817.php | vdb entry patch vendor advisory |
http://www.securityfocus.com/bid/3799 | vdb entry |
http://marc.info/?l=bugtraq&m=101189911121808&w=2 | mailing list |