RSS   Vulnerabilities for
'Action and information management system'
   RSS

2012-10-01
 
CVE-2012-0989

CWE-79
 

 
Cross-site scripting (XSS) vulnerability in OneOrZero AIMS 2.8.0 Trial Edition build231211 and possibly earlier allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to index.php.

 

 >>> Vendor: Oneorzero 4 Products
Oneorzero helpdesk
Oneorzero
AIMS
Action and information management system


Copyright 2017, cxsecurity.com