CVE-2012-4989: XSS
Cross-site scripting (XSS) vulnerability in admin/plugin-index.php in OpenX 2.8.10 before revision 81823 allows remote attackers to inject arbitrary web script or HTML via the parent parameter in an info action.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-4989?
CVE-2012-4989 is classified as a medium severity vulnerability due to its ability to allow cross-site scripting attacks.
How do I fix CVE-2012-4989?
To fix CVE-2012-4989, it is recommended to upgrade OpenX to a version later than 2.8.10, specifically after revision 81823.
What software versions are affected by CVE-2012-4989?
The vulnerability CVE-2012-4989 specifically affects OpenX version 2.8.10.
What type of vulnerability is CVE-2012-4989?
CVE-2012-4989 is a cross-site scripting (XSS) vulnerability that allows attackers to inject arbitrary web scripts or HTML.
Who can exploit CVE-2012-4989?
Remote attackers can exploit CVE-2012-4989 to perform cross-site scripting attacks through a crafted request to the vulnerable OpenX application.