CVE-2008-6979 Information

Description

Cross-site scripting (XSS) vulnerability in as_archives.php in phpAdultSite CMS possibly 2.3.2 allows remote attackers to inject arbitrary web script or HTML via the results_per_page parameter to index.php. NOTE: some of these details are obtained from third party information. NOTE: this issue might be resultant from a separate SQL injection vulnerability.

Reference

http://osvdb.org/47943 http://secunia.com/advisories/31793 http://www.davidsopas.com/2008/09/phpadult-cms-exploit/ http://www.securityfocus.com/archive/1/496069/100/0/threaded http://www.securityfocus.com/bid/31057 https://exchange.xforce.ibmcloud.com/vulnerabilities/44923

Share on: