Security Advisory

CVE-2010-3070

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2010-09-28 17:00:00
Last updated 2024-08-07 02:55:46
Assigner redhat
State PUBLISHED

Description

Cross-site scripting (XSS) vulnerability in NuSOAP 0.9.5, as used in MantisBT and other products, allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to an arbitrary PHP script that uses NuSOAP classes.