Cross-site scripting vulnerability (XSS) in (1) as_web.exe and (2) as_web4.exe in askSam Web Publisher 1 and 4 allows remote attackers to execute arbitrary script as other users via a URL.
| Software | From | Fixed in |
|---|---|---|
| asksam_systems / asksam_web_publisher | 1.0 | 1.0.x |
| asksam_systems / asksam_web_publisher | 4.0 | 4.0.x |