Cross-site scripting vulnerability (XSS) in (1) as_web.exe and (2) as_web4.exe in askSam Web Publisher 1 and 4 allows remote attackers to execute arbitrary script as other users via a URL.
Link | Tags |
---|---|
http://online.securityfocus.com/archive/82/270970 | mailing list |
http://www.securityfocus.com/bid/4670 | vdb entry exploit |
http://www.ifrance.com/kitetoua/tuto/5holes4.txt | vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/9003 | vdb entry |