Multiple cross-site scripting (XSS) vulnerabilities in SmartPPC Pro allow remote attackers to inject arbitrary web script or HTML via the username parameter in (1) directory.php, (2) frames.php, and (3) search.php.
Link | Tags |
---|---|
http://nightmaresecurity.net/index.php?showtopic=1015 | url repurposed |
http://www.addict3d.org/index.php?page=viewarticle&type=security&ID=5359 | exploit vendor advisory |
http://securitytracker.com/id?1015259 | vdb entry |
http://www.vupen.com/english/advisories/2005/2581 | vdb entry |
http://www.securityfocus.com/bid/15567 | vdb entry |
http://www.osvdb.org/21092 | vdb entry |
http://secunia.com/advisories/17736 | third party advisory vendor advisory |
http://www.osvdb.org/21091 | vdb entry |
http://www.osvdb.org/21090 | vdb entry |