Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2005-3334
Description:Cross-site scripting (XSS) vulnerability in index.php in Flyspray 0.9.7 through 0.9.8 (devel) allows remote attackers to inject arbitrary web script or HTML via the (1) PHPSESSID, (2) task, (3) string, (4) type, (5) serv, (6) due, (7) dev, and (8) sort2 parameters.
Test IDs: 1.3.6.1.4.1.25623.1.0.56208   1.3.6.1.4.1.25623.1.0.55841  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2005-3334
BugTraq ID: 15209
http://www.securityfocus.com/bid/15209
Debian Security Information: DSA-953 (Google Search)
http://www.debian.org/security/2006/dsa-953
http://lostmon.blogspot.com/2005/10/flyspray-bug-killer-multiple-variable.html
http://www.osvdb.org/20326
http://secunia.com/advisories/17316
http://secunia.com/advisories/18606
XForce ISS Database: flyspray-index-xss(22889)
https://exchange.xforce.ibmcloud.com/vulnerabilities/22889




© 1998-2025 E-Soft Inc. All rights reserved.