4.3
CVSSv2

CVE-2010-2428

Published: 24/06/2010 Updated: 17/08/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in admin_loginok.html in the Administrator web interface in Wing FTP Server for Windows 3.5.0 and previous versions allows remote malicious users to inject arbitrary web script or HTML via a crafted POST request.

Vulnerable Product Search on Vulmon Subscribe to Product

wftpserver wing ftp server

wftpserver wing ftp server 1.1

wftpserver wing ftp server 1.2

wftpserver wing ftp server 1.3

wftpserver wing ftp server 1.4

wftpserver wing ftp server 1.5

wftpserver wing ftp server 1.6

wftpserver wing ftp server 2.0

wftpserver wing ftp server 2.1

wftpserver wing ftp server 2.3

wftpserver wing ftp server 2.4

wftpserver wing ftp server 3.0.0

wftpserver wing ftp server 3.1.0

wftpserver wing ftp server 3.1.2

wftpserver wing ftp server 3.2.0

wftpserver wing ftp server 3.2.4

wftpserver wing ftp server 3.2.8

wftpserver wing ftp server 3.3.0

wftpserver wing ftp server 3.3.4

wftpserver wing ftp server 3.3.5

wftpserver wing ftp server 3.4.0

wftpserver wing ftp server 3.4.1

wftpserver wing ftp server 3.4.2

wftpserver wing ftp server 3.4.3

wftpserver wing ftp server 3.4.5