Vulnerabilities > CVE-2007-2818 - Cross-Site Scripting vulnerability in Cactusoft Parodia Cand_Login.ASP

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
cactusoft

Summary

Cross-site scripting (XSS) vulnerability in cand_login.asp in CactuSoft Parodia 6.4 and earlier allows remote attackers to inject arbitrary web script or HTML via the strJobIDs parameter.

Vulnerable Configurations

Part Description Count
Application
Cactusoft
1