Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2008-7048
Description:Multiple cross-site scripting (XSS) vulnerabilities in NatterChat 1.12 allow remote attackers to inject arbitrary web script or HTML via the (1) txtUsername parameter to registerDo.asp, as invoked from register.asp, or (2) txtRoomName parameter to room_new.asp. NOTE: these issues might be resultant from XSS in SQL error messages.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2008-7048
http://archives.neohapsis.com/archives/fulldisclosure/2008-11/0461.html
http://osvdb.org/51985
XForce ISS Database: natterchat-register-xss(46768)
https://exchange.xforce.ibmcloud.com/vulnerabilities/46768




© 1998-2025 E-Soft Inc. All rights reserved.