Vulnerabilities > Visale

DATE CVE VULNERABILITY TITLE RISK
2006-04-20 CVE-2006-1946 Cross-Site Scripting vulnerability in Visale
Multiple cross-site scripting (XSS) vulnerabilities in Visale 1.0 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the keyval parameter in pbpgst.cgi, (2) the catsubno parameter in pblscg.cgi, and (3) the listno parameter in pblsmb.cgi.
network
high complexity
visale
2.6