Cross-site scripting (XSS) vulnerability in View.pm in BackupPC 3.0.0, 3.1.0, 3.2.0, 3.2.1, and possibly earlier allows remote malicious users to inject arbitrary web script or HTML via the num parameter in a view action to index.cgi, related to the log file viewer, a different vulnerability than CVE-2011-3361.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
craig barratt backuppc 3.2.1 |
||
craig barratt backuppc 3.1.0 |
||
craig barratt backuppc 3.2.0 |
||
craig barratt backuppc 3.0.0 |