Adventia Chat 3.1 and Server Pro 3.0 allows remote attackers to inject arbitrary web script or HTML into the chat space, which leaves other users vulnerable to cross-site scripting (XSS) attacks.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/12927 | vdb entry vendor advisory |
http://www.securityfocus.com/bid/12940 | vdb entry |
http://exploitlabs.com/files/advisories/EXPL-A-2005-003-adventiachat.txt | vendor advisory |
http://securitytracker.com/id?1013588 | vdb entry vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/21317 | vdb entry |
http://marc.info/?l=full-disclosure&m=111211930330410&w=2 | mailing list |
http://www.osvdb.org/15156 | vdb entry |