Cross-site scripting (XSS) vulnerability in CGI/Browse.pm in BackupPC 3.2.0 and possibly other versions prior to 3.2.1 allows remote malicious users to inject arbitrary web script or HTML via the num parameter in a browse action to index.cgi.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
craig barratt backuppc 3.2.0 |