CVE-2008-5059 Information

Description

Cross-site scripting (XSS) vulnerability in index.php in ModernBill 4.4 and earlier allows remote attackers to inject arbitrary web script or HTML via a Javascript event in the new_language parameter in a login action.

Reference

http://secunia.com/advisories/32529 http://securityreason.com/securityalert/4587 https://exchange.xforce.ibmcloud.com/vulnerabilities/46512 https://www.exploit-db.com/exploits/6916

Share on: