CVE-2008-6174: XSS
Published Feb 19, 2009
·Updated
Cross-site scripting (XSS) vulnerability in admin/postlister/index.php in Jetbox CMS 2.1 allows remote attackers to inject arbitrary web script or HTML via the liste parameter.
Affected Software
1 affected component
Jetbox Jetbox CMS=2.1
Event History
Feb 19, 2009
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Data Sourced
via NVD·04:30 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2008-6174?
CVE-2008-6174 is a medium-severity cross-site scripting (XSS) vulnerability.
2
How do I fix CVE-2008-6174?
To fix CVE-2008-6174, ensure proper input validation and sanitization for the 'liste' parameter used in the admin/postlister/index.php file.
3
What versions of Jetbox CMS are affected by CVE-2008-6174?
CVE-2008-6174 affects Jetbox CMS version 2.1.
4
What type of attack can occur due to CVE-2008-6174?
CVE-2008-6174 allows remote attackers to perform cross-site scripting (XSS) attacks.
5
Is CVE-2008-6174 still relevant today?
Yes, CVE-2008-6174 remains relevant as it highlights ongoing risks in web applications using Jetbox CMS 2.1.