2.6
CVSSv2

CVE-2008-0334

Published: 17/01/2008 Updated: 05/09/2008
CVSS v2 Base Score: 2.6 | Impact Score: 2.9 | Exploitability Score: 4.9
VMScore: 265
Vector: AV:N/AC:H/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in pm/language/spanish/preferences.php in PMachine Pro 2.4.1 allows remote malicious users to inject arbitrary web script or HTML via the L_PREF_NAME[855] parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

pmachine pmachine pro 2.4.1

Exploits

source: wwwsecurityfocuscom/bid/27282/info pMachine Pro is prone to multiple cross-site scripting vulnerabilities because it fails to properly sanitize user-supplied input An attacker may leverage these issues to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site This may allow the ...