Multiple cross-site scripting (XSS) vulnerabilities in Carbon Communities 2.4 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) Redirect parameter to login.asp and the (2) OrderBy parameter to member_send.asp.
Metrics
Affected Vendors & Products
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T08:40:59.865Z
Reserved: 2008-04-18T00:00:00
Link: CVE-2008-1896

No data.

Status : Deferred
Published: 2008-04-18T22:05:00.000
Modified: 2025-04-09T00:30:58.490
Link: CVE-2008-1896

No data.

No data.