CONTROLzx HMS Multiple Cross-Site Scripting Vulnerabilities

These issues may be exploited with a web client.

The following examples have been provided:

http://www.example.com/shared_order.php?sharedPlanID=1[XSS]
http://www.example.com/dedicated_order.php?dedicatedPlanID=1[XSS]
http://www.example.com/customers/server_management.php?plan_id=1[XSS]


 

Privacy Statement
Copyright 2010, SecurityFocus