Cross-site scripting (XSS) vulnerability in the banner engine (TBE) 5.0 allows remote attackers to execute arbitrary script as other users via the HTML banner view/preview capability.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Tbe_banner_engine | Native_solutions | 4.0 (including) | 4.0 (including) |
| Tbe_banner_engine | Native_solutions | 5.0 (including) | 5.0 (including) |