CVE-2008-2496
28.05.2008, 15:32
Multiple cross-site scripting (XSS) vulnerabilities in Quate CMS 0.3.4 allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to (1) index.php, (2) login.php, and (3) credits.php in admin/, and (4) upgrade/index.php.
Vendor | Product | Version |
---|---|---|
quate | quate_cms | 0.3.4 |
𝑥
= Vulnerable software versions
References