CVE-2008-6465
13.03.2009, 10:30
Multiple cross-site scripting (XSS) vulnerabilities in login.php in webshell4 in Parallels H-Sphere 3.0.0 P9 and 3.1 P1 allow remote attackers to inject arbitrary web script or HTML via the (1) err, (2) errorcode, and (3) login parameters.
Vendor | Product | Version |
---|---|---|
parallels | h-sphere | 3.0.0:p9 |
parallels | h-sphere | 3.1:p1 |
𝑥
= Vulnerable software versions
References