CVE Database
/

CVE-2010-4276

Back to search

CVE-2010-4276

Published: Dec 30, 2010

Modified: Aug 7, 2024

PUBLISHED

Description

Cross-site scripting (XSS) vulnerability in the lz_tracking_set_sessid function in templates/jscript/jstrack.tpl in LiveZilla 3.2.0.2 allows remote attackers to inject arbitrary web script or HTML via the livezilla parameter in a track action to server.php.

VendorProductVersions

n/a

n/a

affected
n/a

References

ADV-2010-3331
vdb-entry
x_refsource_VUPEN
42748
third-party-advisory
x_refsource_SECUNIA
45586
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now