MEDIUM
Multiple cross-site scripting (XSS) vulnerabilities in AstroSoft HelpDesk before 1.95.228 allow remote attackers to inject arbitrary web script or HTML via the (1) txtSearch parameter to operator/article/article_search_results.asp and the (2) Attach_Id parameter to operator/article/article_attachment.asp
Published Feb 6, 2008
4.3
MEDIUMCVSS 2.0
EPSS 1.49%
Description
Affected products
Remediation
Metrics
References (4)
Change history (0)
No recorded changes yet.