Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2010-5284
Description:Multiple cross-site scripting (XSS) vulnerabilities in Collabtive 0.6.5 allow remote attackers to inject arbitrary web script or HTML via the (1) User parameter in the edit user profile feature to manageuser.php, (2) y parameter in a newcal action to manageajax.php, and the (3) pic parameter to thumb.php.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2010-5284
BugTraq ID: 44050
http://www.securityfocus.com/bid/44050
http://www.exploit-db.com/exploits/15240
http://packetstormsecurity.org/1010-exploits/collabtive-xssxsrf.txt
http://www.anatoliasecurity.com/adv/as-adv-2010-003.txt
http://secunia.com/advisories/41805




© 1998-2025 E-Soft Inc. All rights reserved.