Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista

Questwork QuestCMS Multiple Remote Vulnerabilities

QuestCMS is prone to multiple vulnerabilities, including a directory-traversal issue, an SQL-injection issue, and a cross-site scripting issue.

Exploiting these issues could allow an attacker to view arbitrary local files within the context of the webserver, steal cookie-based authentication credentials, compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.







 

Privacy Statement
Copyright 2008, SecurityFocus