Security Advisory

CVE-2009-2571

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2009-07-22 17:09:00
Last updated 2024-08-07 05:52:15
Assigner mitre
State PUBLISHED

Description

Multiple cross-site scripting (XSS) vulnerabilities in index.php in VerliAdmin 0.3.7 and 0.3.8 allow remote attackers to inject arbitrary web script or HTML via (1) the URI, (2) the q parameter, (3) the nick parameter, or (4) the nick parameter in a bantest action.