CVE-2009-3066 Information

Description

Multiple cross-site scripting (XSS) vulnerabilities in PropertyWatchScript.com Property Watch 2.0 allow remote attackers to inject arbitrary web script or HTML via the (1) videoid parameter to tools/email.php and (2) redirect parameter to tools/login.php.

Reference

http://packetstormsecurity.org/0909-exploits/propertywatch-xss.txt http://secunia.com/advisories/36548

Share on: