CVE-2008-2398
21.05.2008, 13:24
Cross-site scripting (XSS) vulnerability in index.php in AppServ Open Project 2.5.10 and earlier allows remote attackers to inject arbitrary web script or HTML via the appservlang parameter.
Vendor | Product | Version |
---|---|---|
appserv_open_project | appserv | 𝑥 ≤ 2.5.10 |
appserv_open_project | appserv | 1.0.0 |
appserv_open_project | appserv | 1.2.0 |
appserv_open_project | appserv | 1.3.0 |
appserv_open_project | appserv | 1.4.0 |
appserv_open_project | appserv | 1.5.0 |
appserv_open_project | appserv | 1.6.0 |
appserv_open_project | appserv | 1.7.0 |
appserv_open_project | appserv | 1.8.0 |
appserv_open_project | appserv | 1.9.0 |
appserv_open_project | appserv | 2.0.0 |
appserv_open_project | appserv | 2.1.0 |
appserv_open_project | appserv | 2.2.0 |
appserv_open_project | appserv | 2.3.0 |
appserv_open_project | appserv | 2.4 |
appserv_open_project | appserv | 2.4.1 |
appserv_open_project | appserv | 2.4.2 |
appserv_open_project | appserv | 2.4.3 |
appserv_open_project | appserv | 2.4.4 |
appserv_open_project | appserv | 2.4.4a:a |
appserv_open_project | appserv | 2.4.5 |
appserv_open_project | appserv | 2.4.6 |
appserv_open_project | appserv | 2.4.7 |
appserv_open_project | appserv | 2.4.8 |
appserv_open_project | appserv | 2.4.9 |
appserv_open_project | appserv | 2.5 |
appserv_open_project | appserv | 2.5.1 |
appserv_open_project | appserv | 2.5.2 |
appserv_open_project | appserv | 2.5.3 |
appserv_open_project | appserv | 2.5.4 |
appserv_open_project | appserv | 2.5.4a:a |
appserv_open_project | appserv | 2.5.5 |
appserv_open_project | appserv | 2.5.6 |
appserv_open_project | appserv | 2.5.7 |
appserv_open_project | appserv | 2.5.8 |
appserv_open_project | appserv | 2.5.9 |
𝑥
= Vulnerable software versions
References