Vulnerabilities > Radactive > I Load > 2008.2.4.0

DATE CVE VULNERABILITY TITLE RISK
2009-09-29 CVE-2009-3450 Cross-Site Scripting vulnerability in Radactive I-Load
Multiple cross-site scripting (XSS) vulnerabilities in WebCoreModule.ashx in RADactive I-Load before 2008.2.5.0 allow remote attackers to inject arbitrary web script or HTML via parameters with names beginning with __ (underscore underscore) sequences, which are incompatible with an XSS protection mechanism provided by Microsoft ASP.NET.
network
radactive CWE-79
4.3