CVE-2010-4109 Information

Description

Cross-site scripting (XSS) vulnerability in the Contacts Application in HP Palm webOS before 2.0 allows remote attackers to inject arbitrary web script or HTML via a crafted vCard file.

Reference

http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c02639302 http://www.securitytracker.com/id?1024827 http://www.vupen.com/english/advisories/2010/3131

Share on: