Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:12851
HistoryMay 27, 2006 - 12:00 a.m.

Assetman <= 2.4a XSS

2006-05-2700:00:00
vulners.com
12

Assetman <= 2.4a XSS

Discovered by: Nomenumbra
Date: 23/5/2006
impact:moderate (privilege escalation,possible defacement)

Assetman doesn't filter any of it's input, allowing users
to inject arbitrary HTML or javascript code.

Nomenumbra