Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2008-2761

Overview

Vulnerability Score 3.5 3.5
CVE Id CVE-2008-2761
Last Modified 14 Apr 2009 01:32:37
Published 18 Jun 2008 06:41:00
Confidentiality Impact NONE NONE
Integrity Impact PARTIAL PARTIAL
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity MEDIUM
Authentication SINGLE_INSTANCE

CVE-2008-2761

Summary

Multiple cross-site scripting (XSS) vulnerabilities in Xigla Absolute Banner Manager XE 2.0 allow remote authenticated administrators to inject arbitrary web script or HTML via the text parameter in (1) searchbanners.asp and (2) listadvertisers.asp, and other unspecified fields. NOTE: some of these details are obtained from third party information.

Vulnerable Systems

Application

  • Xigla Absolute Banner Manager 2.0


References

XF - absolutebanner-searchbanners-xss(43045)

BID - 29672

SREASON - 3950

SECUNIA - 30641

BUGTRAQ - 20080611 Xigla Multiple Products - Multiple Vulnerabilities

MISC - http://bugreport.ir/index.php?/41


Last Updated: 27 May 2016 10:47:58