Cross-site scripting (XSS) vulnerability in Slashcode CVS releases June 17 through July 1 2002 allows remote attackers to execute arbitrary script as other users by injecting script into the paragraph tag.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Slashcode | Open_source_development_network | 2.2.1 (including) | 2.2.1 (including) |
| Slashcode | Open_source_development_network | 2.2.2 (including) | 2.2.2 (including) |
| Slashcode | Open_source_development_network | 2.2.3 (including) | 2.2.3 (including) |
| Slashcode | Open_source_development_network | 2.2.4 (including) | 2.2.4 (including) |
| Slashcode | Open_source_development_network | 2.2.5 (including) | 2.2.5 (including) |