Security Advisory

CVE-2006-2488

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2006-05-19 23:00:00
Last updated 2024-08-07 17:51:04
Assigner mitre
State PUBLISHED

Description

Multiple cross-site scripting (XSS) vulnerabilities in Spymac WebOS (WOS) 5.0 allow remote attackers to inject arbitrary web script or HTML via the (1) del_folder, (2) nick, or (3) action parameters to (a) notes/index.php, (4) curr parameter to (b) ipod/get_ipod.php, and in (c) login.php.