CVE-2008-6034: XSS
Published Feb 3, 2009
·Updated
Cross-site scripting (XSS) vulnerability in dispatch.php in Achievo 1.3.2 allows remote attackers to inject arbitrary web script or HTML via the atkaction parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Affected Software
1 affected component
Achievo Achievo=1.3.2
Event History
Feb 3, 2009
CVE Published
via MITRE·11:00 AM
Data Sourced
via MITRE·11:00 AM
Description
Data Sourced
via NVD·11:30 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2008-6034?
The severity of CVE-2008-6034 is considered moderate due to its cross-site scripting nature allowing for the injection of malicious scripts.
2
How do I fix CVE-2008-6034?
To fix CVE-2008-6034, you should upgrade to a patched version of Achievo that addresses this vulnerability.
3
What type of vulnerability is CVE-2008-6034?
CVE-2008-6034 is a cross-site scripting (XSS) vulnerability.
4
Which version of Achievo is affected by CVE-2008-6034?
Achievo version 1.3.2 is affected by CVE-2008-6034.
5
What can attackers do with CVE-2008-6034?
Attackers can exploit CVE-2008-6034 to inject arbitrary web scripts or HTML into pages viewed by other users.