mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-30 17:29:30 +02:00
18 lines
697 B
Markdown
18 lines
697 B
Markdown
### [CVE-2008-4931](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-4931)
|
|

|
|

|
|

|
|
|
|
### Description
|
|
|
|
Cross-site scripting (XSS) vulnerability in the account module in firmCHANNEL Digital Signage 3.24, and possibly earlier versions, allows remote attackers to inject arbitrary web script or HTML via the action parameter to index.php.
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
- http://securityreason.com/securityalert/4566
|
|
|
|
#### Github
|
|
No PoCs found on GitHub currently.
|
|
|