Multiple cross-site scripting (XSS) vulnerabilities in various scripts in Web-Labs CMS allow remote attackers to inject arbitrary web script or HTML via (1) the search parameter and (2) unspecified fields related to e-mail alerts. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
References
Configurations
Information
Published : 2006-05-15 03:02
Updated : 2017-07-19 18:31
NVD link : CVE-2006-2358
Mitre link : CVE-2006-2358
JSON object : View
CWE
Products Affected
web-labs
- web-labs_cms