CVE-2006-1410 Information

Description

Multiple cross-site scripting (XSS) vulnerabilities in XIGLA Absolute Live Support XE 2.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) Screen name or (2) Session Topic field.

Reference

http://pridels0.blogspot.com/2006/03/absolute-live-support-xe-v20-xss-vuln.html http://secunia.com/advisories/19415 http://www.osvdb.org/24131 http://www.securityfocus.com/bid/17258 http://www.vupen.com/english/advisories/2006/1099 https://exchange.xforce.ibmcloud.com/vulnerabilities/25434

Share on: