CVE-2013-2651 Information

Description

Multiple cross-site scripting (XSS) vulnerabilities in BoltWire 3.5 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) \p\ or (2) content parameter to index.php.

Reference

http://archives.neohapsis.com/archives/bugtraq/2013-10/0033.html http://packetstormsecurity.com/files/123558 https://exchange.xforce.ibmcloud.com/vulnerabilities/87809

Share on: