CVE-2008-0426: XSS
Published Jan 23, 2008
·Updated
Multiple cross-site scripting (XSS) vulnerabilities in submit.php in PacerCMS before 0.6.1 allow remote attackers to inject arbitrary web script or HTML via the (1) name, (2) headline, or (3) text field in a message.
Affected Software
1 affected component
PacerCMS PacerCMS<=0.6.1
Remediation
Patch Available
Event History
Jan 23, 2008
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-0426?
CVE-2008-0426 is considered a medium severity vulnerability due to its ability to allow cross-site scripting attacks.
2
How do I fix CVE-2008-0426?
To fix CVE-2008-0426, upgrade to PacerCMS version 0.6.1 or later which addresses these XSS vulnerabilities.
3
What components are affected by CVE-2008-0426?
CVE-2008-0426 affects the submit.php file in PacerCMS versions prior to 0.6.1.
4
What types of attacks can be executed due to CVE-2008-0426?
CVE-2008-0426 allows remote attackers to execute arbitrary web scripts or HTML through cross-site scripting.
5
Can CVE-2008-0426 affect user data security?
Yes, CVE-2008-0426 can compromise user data security by enabling the injection of malicious scripts into web pages.