CVE-2012-2235
4.3
Vector
AV:N/AC:M/Au:N/C:N/I:P/A:N
Exploitability: 8.6 / Impact: 2.9
Source: NVD
Description
Cross-site scripting (XSS) vulnerability in Support Incident Tracker (SiT!) 3.65 and earlier allows remote attackers to inject arbitrary web script or HTML via the id parameter to index.php, which is not properly handled in an error message.
Affected (39)
Products: Sitracker: Support Incident Tracker
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 3.65 |
References (2)
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit
Timeline
No history available yet.