First published: Thu Feb 19 2009(Updated: )
Cross-site scripting (XSS) vulnerability in admin/postlister/index.php in Jetbox CMS 2.1 allows remote attackers to inject arbitrary web script or HTML via the liste parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Jetbox CMS | =2.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-6174 is a medium-severity cross-site scripting (XSS) vulnerability.
To fix CVE-2008-6174, ensure proper input validation and sanitization for the 'liste' parameter used in the admin/postlister/index.php file.
CVE-2008-6174 affects Jetbox CMS version 2.1.
CVE-2008-6174 allows remote attackers to perform cross-site scripting (XSS) attacks.
Yes, CVE-2008-6174 remains relevant as it highlights ongoing risks in web applications using Jetbox CMS 2.1.