CVE-2009-2613: XSS
Multiple cross-site scripting (XSS) vulnerabilities in DataCheck Solutions LinkPal 1.x allow remote attackers to inject arbitrary web script or HTML via the page parameter to (1) zloginfailed.asp, (2) zadminlogin.asp, (3) zforgot.asp, and possibly unspecified other components. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2009-2613?
CVE-2009-2613 is rated as a medium severity cross-site scripting vulnerability.
How do I fix CVE-2009-2613?
To fix CVE-2009-2613, ensure that user inputs for the affected page parameters are properly sanitized before being processed.
Which components are affected by CVE-2009-2613?
CVE-2009-2613 affects components including z_loginfailed.asp, z_admin_login.asp, and z_forgot.asp.
Who can exploit CVE-2009-2613?
Remote attackers can exploit CVE-2009-2613 to inject arbitrary web scripts or HTML.
What software version does CVE-2009-2613 affect?
CVE-2009-2613 affects DataCheck Solutions LinkPal version 1.0.