Cross-site scripting (XSS) vulnerability in index.tmpl in Azureus Tracker 2.4.0.2 and earlier (Java BitTorrent Client Tracker) allows remote attackers to inject arbitrary web script or HTML via the search parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Azureus_tracker | Azureus_tracker | 2.2.0.2 (including) | 2.2.0.2 (including) |
Azureus_tracker | Azureus_tracker | 2.3.0.6 (including) | 2.3.0.6 (including) |
Azureus_tracker | Azureus_tracker | 2.4.0.2 (including) | 2.4.0.2 (including) |