First published: Mon Mar 31 2008(Updated: )
Cross-site scripting (XSS) vulnerability in Search.do in ManageEngine Applications Manager 8.x allows remote attackers to inject arbitrary web script or HTML via the query parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
ManageEngine Applications Manager | =8.1 | |
ManageEngine Applications Manager | =8.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-1566 is classified as a high severity vulnerability due to the ease of exploiting the XSS flaw.
To fix CVE-2008-1566, it is recommended to update ManageEngine Applications Manager to a version that addresses the XSS vulnerability.
CVE-2008-1566 affects ManageEngine Applications Manager versions 8.1 and 8.2.
CVE-2008-1566 is a cross-site scripting (XSS) vulnerability.
Yes, exploiting CVE-2008-1566 can allow attackers to inject malicious scripts, potentially leading to data theft.