MEDIUM
Multiple cross-site scripting (XSS) vulnerabilities in Butterfly Organizer 2.0.0 allow remote attackers to inject arbitrary web script or HTML via the (1) mytable parameter to view.php, (2) mytable parameter to viewdb2.php, (3) tablehere parameter to category-rename.php, and (4) letter parameter to module-contacts.php
Published Apr 10, 2009
4.3
MEDIUMCVSS 2.0
EPSS 1.51%
Description
Affected products
Remediation
Metrics
References (3)
Change history (0)
No recorded changes yet.