|
|

CVE Reference: CVE-2004-2059 |
|
| NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE. | |
|
Original Page at CVE MITRE: CVE-2004-2059 |
|
|
Description: Multiple cross-site scripting vulnerabilities in ASPRunner 2.4 allow remote attackers inject arbitrary web script or HTML via the (1) SearchFor parameter in [TABLE-NAME]_search.asp, (2) SQL parameter in [TABLE-NAME]_edit.asp, (3) SearchFor parameter in [TABLE]_list.asp, or (4) SQL parameter in export.asp. |
|
|
CVE Status: Candidate |
|
|
References: XF http://xforce.iss.net/xforce/xfdb/16801 VULNWATCH http://archives.neohapsis.com/archives/vulnwatch/2004-q3/0011.html ST 1010777 SAID Secunia Advisory: SA12164 OSVDB 8257 8254 8255 8256 MISC http://ferruh.mavituna.com/article/?574 BUGTRAQ http://marc.theaimsgroup.com/?l=bugtraq&m=109086977330418&w=2 BID 10799 |
|
| Return to the previous page. |
Not a customer already?Learn more about how our market leading Vulnerability Management solutions can help you manage risk and ensure compliance. |