Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2010-2796
Description:Cross-site scripting (XSS) vulnerability in phpCAS before 1.1.2, when proxy mode is enabled, allows remote attackers to inject arbitrary web script or HTML via a callback URL.
Test IDs: 1.3.6.1.4.1.25623.1.0.67949   1.3.6.1.4.1.25623.1.0.67962   1.3.6.1.4.1.25623.1.0.68395   1.3.6.1.4.1.25623.1.0.68393   1.3.6.1.4.1.25623.1.0.67973   1.3.6.1.4.1.25623.1.0.67967   1.3.6.1.4.1.25623.1.0.67968   1.3.6.1.4.1.25623.1.0.67951  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2010-2796
40845
http://secunia.com/advisories/40845
41240
http://secunia.com/advisories/41240
42149
http://secunia.com/advisories/42149
42160
http://www.securityfocus.com/bid/42160
42184
http://secunia.com/advisories/42184
43427
http://secunia.com/advisories/43427
ADV-2010-2234
http://www.vupen.com/english/advisories/2010/2234
ADV-2010-2261
http://www.vupen.com/english/advisories/2010/2261
ADV-2010-2909
http://www.vupen.com/english/advisories/2010/2909
ADV-2011-0456
http://www.vupen.com/english/advisories/2011/0456
DSA-2172
http://www.debian.org/security/2011/dsa-2172
FEDORA-2010-12247
http://lists.fedoraproject.org/pipermail/package-announce/2010-August/046584.html
FEDORA-2010-12258
http://lists.fedoraproject.org/pipermail/package-announce/2010-August/046576.html
FEDORA-2010-16905
http://lists.fedoraproject.org/pipermail/package-announce/2010-November/050415.html
FEDORA-2010-16912
http://lists.fedoraproject.org/pipermail/package-announce/2010-November/050428.html
https://forge.indepnet.net/projects/glpi/repository/revisions/12601
https://forge.indepnet.net/projects/glpi/repository/revisions/12601
https://issues.jasig.org/browse/PHPCAS-67
https://issues.jasig.org/browse/PHPCAS-67
https://wiki.jasig.org/display/CASC/phpCAS+ChangeLog
https://wiki.jasig.org/display/CASC/phpCAS+ChangeLog
phpcas-callback-url-xss(60895)
https://exchange.xforce.ibmcloud.com/vulnerabilities/60895




© 1998-2025 E-Soft Inc. All rights reserved.