CVE-2008-1850 Information

Description

Multiple cross-site scripting (XSS) vulnerabilities in login.php in Omnistar Interactive OSI Affiliate allow remote attackers to inject arbitrary web script or HTML via the (1) login (2) profile (3) profile2 and (4) ref parameters.

Reference

http://secunia.com/advisories/29779 http://www.mrzayas.es/2008/04/11/xss-en-osiaffiliate/ http://www.osvdb.org/44376 http://www.securityfocus.com/bid/28785 http://www.securityfocus.com/bid/28793 https://exchange.xforce.ibmcloud.com/vulnerabilities/41811 https://exchange.xforce.ibmcloud.com/vulnerabilities/41825

Share on: