CVE

CVE-2008-0867

Severity:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
21/02/2008
Last modified:
15/10/2018

Description

Cross-site scripting (XSS) vulnerability in portal/server.pt in BEA AquaLogic Interaction 6.1 through MP1 and Plumtree Foundation 6.0 through SP1 allows remote attackers to inject arbitrary web script or HTML via the name parameter.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:bea_systems:aqualogic_interaction:6.1:*:*:*:*:*:*:*
cpe:2.3:a:bea_systems:aqualogic_interaction:6.1:mp1:*:*:*:*:*:*
cpe:2.3:a:bea_systems:plumtree_foundation:6.0:*:*:*:*:*:*:*
cpe:2.3:a:bea_systems:plumtree_foundation:6.0:sp1:*:*:*:*:*:*