Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2008-6682
Description:Multiple cross-site scripting (XSS) vulnerabilities in Apache Struts 2.0.x before 2.0.11.1 and 2.1.x before 2.1.1 allow remote attackers to inject arbitrary web script or HTML via vectors associated with improper handling of (1) " (double quote) characters in the href attribute of an s:a tag and (2) parameters in the action attribute of an s:url tag.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2008-6682
BugTraq ID: 34686
http://www.securityfocus.com/bid/34686




© 1998-2025 E-Soft Inc. All rights reserved.