Security Advisory

CVE-2009-4040

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2009-11-20 19:00:00
Last updated 2024-09-16 16:23:01
Assigner mitre
State PUBLISHED

Description

Cross-site scripting (XSS) vulnerability in phpMyFAQ before 2.0.17 and 2.5.x before 2.5.2, when used with Internet Explorer 6 or 7, allows remote attackers to inject arbitrary web script or HTML via unspecified parameters to the search page.