Cross-site scripting (XSS) vulnerability in Default.aspx in Perpetual Motion Interactive Systems DotNetNuke before 3.3.5, and 4.x before 4.3.5, allows remote attackers to inject arbitrary HTML via the error parameter.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2006-09-24 18:07
Updated : 2017-07-19 18:33
NVD link : CVE-2006-4973
Mitre link : CVE-2006-4973
JSON object : View
CWE
Products Affected
dotnetnuke
- dotnetnuke