Vulnerabilities > Xigla > Low
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2008-06-18 | CVE-2008-2758 | Cross-Site Scripting vulnerability in Xigla Absolute News Manager XE 3.2 Multiple cross-site scripting (XSS) vulnerabilities in Xigla Absolute News Manager XE 3.2 allow remote authenticated administrators to inject arbitrary web script or HTML via the (1) pblname and (2) text parameters to (a) admin/search.asp, (3) name parameter to (b) admin/publishers.asp, and other unspecified vectors to (c) anmviewer.asp and (d) editarticleX.asp in admin/. | 3.5 |
2008-06-18 | CVE-2008-2761 | Cross-Site Scripting vulnerability in Xigla Absolute Banner Manager 2.0 Multiple cross-site scripting (XSS) vulnerabilities in Xigla Absolute Banner Manager XE 2.0 allow remote authenticated administrators to inject arbitrary web script or HTML via the text parameter in (1) searchbanners.asp and (2) listadvertisers.asp, and other unspecified fields. | 3.5 |
2008-06-18 | CVE-2008-2764 | Cross-Site Scripting vulnerability in Xigla Absolute Live Support XE 5.1 Cross-site scripting (XSS) vulnerability in admin/search.asp in Xigla Absolute Live Support XE 5.1 allows remote authenticated administrators to inject arbitrary web script or HTML via unspecified vectors ("all fields"). | 3.5 |
2008-06-18 | CVE-2008-2768 | Cross-Site Scripting vulnerability in Xigla Absolute Poll Manager XE Cross-site scripting (XSS) vulnerability in admin/search.asp in Xigla Poll Manager XE allows remote authenticated users with administrator role privileges to inject arbitrary web script or HTML via unspecified vectors ("all fields"). | 3.5 |