Cross-site scripting (XSS) vulnerability in Openconf 1.04, and possibly other versions before 1.10, allows remote attackers to inject arbitrary HTML and web script via the paper title.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Openconf | Zakon_group | 1.0 (including) | 1.0 (including) |
Openconf | Zakon_group | 1.0_beta1 (including) | 1.0_beta1 (including) |
Openconf | Zakon_group | 1.0_beta2 (including) | 1.0_beta2 (including) |
Openconf | Zakon_group | 1.0_rc1 (including) | 1.0_rc1 (including) |
Openconf | Zakon_group | 1.0_rc2 (including) | 1.0_rc2 (including) |
Openconf | Zakon_group | 1.01 (including) | 1.01 (including) |
Openconf | Zakon_group | 1.02 (including) | 1.02 (including) |
Openconf | Zakon_group | 1.03 (including) | 1.03 (including) |
Openconf | Zakon_group | 1.04 (including) | 1.04 (including) |