Back to search
CVE-2008-2553
Published: Jun 5, 2008
Modified: Aug 7, 2024
PUBLISHED
Description
Cross-site scripting (XSS) vulnerability in Slashdot Like Automated Storytelling Homepage (Slash) (aka Slashcode) R_2_5_0_94 and earlier allows remote attackers to inject arbitrary web script or HTML via the userfield parameter.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
http://www.slashcode.com/article.pl?sid=08/01/07/2314232
x_refsource_CONFIRM
slash-userfield-xss(42882)
vdb-entry
x_refsource_XF
31691
third-party-advisory
x_refsource_SECUNIA
http://www.slashcode.com/article.pl?sid=08/01/04/1950244&tid=4
x_refsource_CONFIRM
DSA-1633
vendor-advisory
x_refsource_DEBIAN
1020207
vdb-entry
x_refsource_SECTRACK
30551
third-party-advisory
x_refsource_SECUNIA
29548
vdb-entry
x_refsource_BID
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now