CVE-2008-6428 Information

Description

The CGI framework in Kaya 0.4.0 allows remote attackers to inject arbitrary HTTP headers and conduct cross-site scripting (XSS) attacks via unspecified vectors.

Reference

http://kayalang.org/about/news http://osvdb.org/45882 http://secunia.com/advisories/30466 https://exchange.xforce.ibmcloud.com/vulnerabilities/42774

Share on: