Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2010-3274
Description:Multiple cross-site scripting (XSS) vulnerabilities in EmployeeSearch.cc in the Employee Search Engine in ZOHO ManageEngine ADSelfService Plus before 4.5 Build 4500 allow remote attackers to inject arbitrary web script or HTML via the searchString parameter in a (1) showList or (2) Search action.
Test IDs: 1.3.6.1.4.1.25623.1.0.902757  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2010-3274
BugTraq ID: 46331
http://www.securityfocus.com/bid/46331
Bugtraq: 20110210 CORE-2011-0103 - ZOHO ManageEngine ADSelfService multiple vulnerabilities (Google Search)
http://www.securityfocus.com/archive/1/516396/100/0/threaded
http://www.coresecurity.com/content/zoho-manageengine-vulnerabilities
http://www.osvdb.org/70871
http://www.osvdb.org/70872
http://secunia.com/advisories/43241
http://securityreason.com/securityalert/8089
http://www.vupen.com/english/advisories/2011/0392
XForce ISS Database: adselfservice-employeesearch-xss(65349)
https://exchange.xforce.ibmcloud.com/vulnerabilities/65349




© 1998-2025 E-Soft Inc. All rights reserved.