Total vulnerabilities in the database
Cross-site scripting vulnerability in viewcvs.cgi for ViewCVS 0.9.2 allows remote attackers to inject script and steal cookies via the (1) cvsroot or (2) sortby parameters.
Software | From | Fixed in |
---|---|---|
viewcvs / viewcvs | 0.9.1 | 0.9.1.x |
viewcvs / viewcvs | 0.8 | 0.8.x |
viewcvs / viewcvs | 0.9.2 | 0.9.2.x |
viewcvs / viewcvs | 0.9 | 0.9.x |