Security Advisory

CVE-2010-0963

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2010-03-16 18:26:00
Last updated 2024-09-16 17:03:09
Assigner mitre
State PUBLISHED

Description

Cross-site scripting (XSS) vulnerability in index.php in dl Download Ticket Service before 0.7 allows remote attackers to inject arbitrary web script or HTML via the t parameter, related to an invalid ticket ID. NOTE: some of these details are obtained from third party information.