RSS   Vulnerabilities for 'Xoops pool module'   RSS

2006-01-13
 
CVE-2006-0198

CWE-Other
 

 
Cross-site scripting (XSS) vulnerability in a certain module, possibly poll or Pool, for XOOPS allows remote attackers to inject arbitrary web script or HTML via JavaScript in the SRC attribute of an IMG element in a comment.

 

 >>> Vendor: Xoops 44 Products
Xoops
Wf-downloads
Xoops pool module
Xoops glossaire module
Xoops rmsoft gallery system
Core module
Library module
Tutoriais module
Friendfinder module
Malaika system myads module
Repository module
Rha7 downloads module
Wf-snippets
Happy linux xfsection module
Zmagazine module
Xoops virii info module
Xoops popnupblog
John mordo jobs module
Flashgames module
Wfquotes module
Myconference module
Icontent module
Cjay content module
Xt-conteudo module
Xfsection module
Horoscope module
Tinycontent module
Wiwimod module
Articles module
Mylinks module
Xoopsgallery module
Mytopics
Eempregos module
Prayer list module
Tiny event module
Xm-memberstats
Xm memberstats
Xoops cube
Article module
Kshop module
Makale
Uploader
Xoops dictionary
Glossaire module


Copyright 2024, cxsecurity.com

 

Back to Top