Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2009-4649
Description:Multiple cross-site scripting (XSS) vulnerabilities in geccBBlite 0.1 allow remote attackers to inject arbitrary web script or HTML via the postatoda parameter to (1) rispondi.php and (2) scrivi.php, which is not properly handled in forum.php.
Test IDs: 1.3.6.1.4.1.25623.1.0.900747  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2009-4649
BugTraq ID: 35449
http://www.securityfocus.com/bid/35449
http://groups.csail.mit.edu/pag/ardilla/
http://groups.csail.mit.edu/pag/ardilla/geccbblite-XSS2-lenient-T.txt
http://groups.csail.mit.edu/pag/ardilla/geccbblite-XSS2-strict-T.txt
XForce ISS Database: geccbblite-postatoda-xss(56278)
https://exchange.xforce.ibmcloud.com/vulnerabilities/56278




© 1998-2025 E-Soft Inc. All rights reserved.