CVE-2005-3285

Cross-site scripting (XSS) vulnerability in comersus_backoffice_searchItemForm.asp in Comersus BackOffice Plus allows remote attackers to inject arbitrary web script or HTML via the (1) forwardTo1, (2) forwardTo2, (3) nameFT1, or (4) nameFT2 parameters.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:comersus_open_technologies:comersus_backoffice_plus:*:*:*:*:*:*:*:*

Information

Published : 2005-10-23 03:02

Updated : 2008-09-05 13:53


NVD link : CVE-2005-3285

Mitre link : CVE-2005-3285


JSON object : View

Advertisement

dedicated server usa

Products Affected

comersus_open_technologies

  • comersus_backoffice_plus