CVE-2010-0963

Publication date

2010-03-16 18:26:00

Family

mitre

State

PUBLISHED

Description

Cross-site scripting (XSS) vulnerability in index.php in dl Download Ticket Service before 0.7 allows remote attackers to inject arbitrary web script or HTML via the t parameter, related to an invalid ticket ID. NOTE: some of these details are obtained from third party information.