CVE-2008-0919
22.02.2008, 23:44
Cross-site scripting (XSS) vulnerability in session/login.php in Open Source Security Information Management (OSSIM) 0.9.9 rc5 and earlier allows remote attackers to inject arbitrary web script or HTML via the dest parameter.
Vendor | Product | Version |
---|---|---|
open_source_security_information_management | os-sim | 0.1alpha:alpha |
open_source_security_information_management | os-sim | 0.2alpha:alpha |
open_source_security_information_management | os-sim | 0.3.1alpha:alpha |
open_source_security_information_management | os-sim | 0.3alpha:alpha |
open_source_security_information_management | os-sim | 0.5.1 |
open_source_security_information_management | os-sim | 0.5.2 |
open_source_security_information_management | os-sim | 0.6 |
open_source_security_information_management | os-sim | 0.6.2 |
open_source_security_information_management | os-sim | 0.6.3 |
open_source_security_information_management | os-sim | 0.7 |
open_source_security_information_management | os-sim | 0.7.1 |
open_source_security_information_management | os-sim | 0.8 |
open_source_security_information_management | os-sim | 0.9 |
open_source_security_information_management | os-sim | 0.9.1 |
open_source_security_information_management | os-sim | 0.9.2 |
open_source_security_information_management | os-sim | 0.9.3 |
open_source_security_information_management | os-sim | 0.9.4 |
open_source_security_information_management | os-sim | 0.9.5 |
open_source_security_information_management | os-sim | 0.9.6 |
open_source_security_information_management | os-sim | 0.9.7 |
open_source_security_information_management | os-sim | 0.9.8 |
open_source_security_information_management | os-sim | 0.9.9_rc1:_rc1 |
open_source_security_information_management | os-sim | 0.9.9_rc2:_rc2 |
open_source_security_information_management | os-sim | 0.9.9_rc3:_rc3 |
open_source_security_information_management | os-sim | 0.9.9_rc4:_rc4 |
𝑥
= Vulnerable software versions
References