Cross-site scripting (XSS) vulnerability in index.php in dl Download Ticket Service before 0.7 allows remote attackers to inject arbitrary web script or HTML via the t parameter, related to an invalid ticket ID. NOTE: some of these details are obtained from third party information.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2010-03-16T18:26:00Z
Updated: 2024-09-16T17:03:09.533Z
Reserved: 2010-03-16T00:00:00Z
Link: CVE-2010-0963
Vulnrichment
No data.
NVD
Status : Modified
Published: 2010-03-16T19:00:00.367
Modified: 2024-11-21T01:13:18.513
Link: CVE-2010-0963
Redhat
No data.