Cross-site scripting (XSS) vulnerability in security.php for Tru-Zone NukeET 3.0 and 3.1 allows remote attackers to inject arbitrary web script or HTML via a base64 encoded Codigo parameter.
Link | Tags |
---|---|
http://securitytracker.com/id?1013936 | vdb entry patch vendor advisory |
http://www.securityfocus.com/bid/13570 | exploit vdb entry patch vendor advisory |
http://lostmon.blogspot.com/2005/05/nukeet-codigo-variable-cross-site.html | exploit patch vendor advisory |
http://secunia.com/advisories/15332 | third party advisory vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/20540 | vdb entry |
http://www.osvdb.org/16214 | vdb entry patch vendor advisory |