CVE-2008-6041 Information

Description

Multiple cross-site scripting (XSS) vulnerabilities in Index.asp in Dataspade 1.0 allow remote attackers to inject arbitrary web script or HTML via the (1) ViewName (2) TableName (3) OrderBy and (4) FilterField parameters.

Reference

http://pridels-team.blogspot.com/2008/09/dataspade-xss-vuln.html http://secunia.com/advisories/31999 http://www.securityfocus.com/bid/31317

Share on: