![]() |
Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | ||
CVE ID: | CVE-2010-4097 |
Description: | Multiple cross-site scripting (XSS) vulnerabilities in index.php in Aardvark Topsites PHP 5.2.0 and 5.2.1 allow remote attackers to inject arbitrary web script or HTML via the (1) mail, (2) title, (3) u, and (4) url parameters. NOTE: the q parameter is already covered by CVE-2009-2302. |
Test IDs: | 1.3.6.1.4.1.25623.1.0.801556 |
Cross References: |
Common Vulnerability Exposure (CVE) ID: CVE-2010-4097 BugTraq ID: 44390 http://www.securityfocus.com/bid/44390 Bugtraq: 20101024 Aardvark Topsite XSS vulnerability (Google Search) http://www.securityfocus.com/archive/1/514423/100/0/threaded XForce ISS Database: topsitesphp-index-xss(62767) https://exchange.xforce.ibmcloud.com/vulnerabilities/62767 |