Security Advisory

CVE-2013-3515

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2013-07-29 21:00:00
Last updated 2024-08-06 16:14:56
Assigner mitre
State PUBLISHED

Description

Multiple cross-site scripting (XSS) vulnerabilities in OpenX Source 2.8.10 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) package parameter to www/admin/plugin-index.php or the (2) group parameter to www/admin/plugin-settings.php.