Multiple cross-site scripting (XSS) vulnerabilities in Taskjitsu before 2.0.1 allow remote attackers to inject arbitrary web script or HTML via multiple unspecified parameters, including the (1) title and (2) description parameters when creating a task.
References
Link | Resource |
---|---|
http://secunia.com/advisories/20912 | Patch Vendor Advisory |
http://www.pkrinternet.com/download/RELEASE-NOTES.txt | URL Repurposed |
http://www.securityfocus.com/bid/18818 | Patch |
http://www.vupen.com/english/advisories/2006/2660 | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/27533 | |
https://www.pkrinternet.com/taskjitsu/task/3313 | URL Repurposed |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2006-07-06 20:05
Updated : 2024-02-14 01:17
NVD link : CVE-2006-3397
Mitre link : CVE-2006-3397
CVE.ORG link : CVE-2006-3397
JSON object : View
Products Affected
pkr_internet
- taskjitsu
CWE