Multiple cross-site scripting (XSS) vulnerabilities in WebAPP before 20070214 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors, related to unspecified fields in user Profiles. NOTE: some of these details are obtained from third party information.
Link | Tags |
---|---|
http://osvdb.org/33301 | vdb entry |
http://www.vupen.com/english/advisories/2007/0605 | vdb entry |
http://www.web-app.org/cgi-bin/index.cgi?action=viewnews&id=251 | patch |
https://exchange.xforce.ibmcloud.com/vulnerabilities/32506 | vdb entry |
http://www.securityfocus.com/bid/22563 | vdb entry |