Multiple cross-site scripting (XSS) vulnerabilities in DMXReady Secure Login Manager 1.0 allow remote authenticated administrators to inject arbitrary web script or HTML via unspecified parameters to (1) set_preferences.asp, (2) send_password_preferences.asp, and (3) SecureLoginManager/list.asp in the Local-Admin Panel.
Link | Tags |
---|---|
http://securitytracker.com/id?1017448 | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/31157 | vdb entry |
http://www.securityfocus.com/archive/1/455353/100/0/threaded | mailing list |