HP Quality Center Multiple Cross Site Scripting Vulnerability

2010.07.19
Credit: Dinesh Arora
Risk: Low
Local: No
Remote: Yes
CVE: N/A
CWE: CWE-79

HP Quality Center Multiple Cross Site Scripting Vulnerability ### # # Author: Dinesh Arora # # Email : dinesh.dinoo@gmail.com # # Share the c0de! # ### # # Title: HP Quality Center Multiple Cross Site Scripting # # Usage : Perhaps the leader in the test case management solution. # # Vendor: http://www.hp.com # # Site : www.garage4hackes.com , www.beenuarora.com # # Quality Center Login Page has multiple XSS issue # # Sample Parameter :MAGENTNAME ( Multiple Parameter Effected ) # # Affected Version 9.0,9.2 ( Tested Ones ) # # Greetz: Eberly , r45c4l, j4ck , Rahul Sasi , Beenu , Charles ########################################################### # # Bug discovered : 21 Dec.2009 ########################################################### -- ------------------ Regards Dinesh 9999846893 -- ------------------ Regards Dinesh 9999846893 HP QC - XSS - Dinesh Arora.txt HP Quality Center Multiple Cross Site Scripting Vulnerability ### # # Author: Dinesh Arora # # Email : dinesh.dinoo@gmail.com # # Share the c0de! # ### # # Title: HP Quality Center Multiple Cross Site Scripting # # Usage : Perhaps the leader in the test case management solution. # # Vendor: http://www.hp.com # # Site : www.garage4hackes.com # # Quality Center Login Page has multiple XSS issue # # Sample Parameter :MAGENTNAME ( Multiple Parameter Effected ) # # Affected Version 9.0,9.2 ( Tested Ones ) # # Greetz: Eberly , r45c4l, j4ck , Rahul Sasi , Beenu , Charles ########################################################### # # Bug discovered : 21 Dec.2009 ###########################################################


Vote for this issue:
50%
50%


 

Thanks for you vote!


 

Thanks for you comment!
Your message is in quarantine 48 hours.

Comment it here.


(*) - required fields.  
{{ x.nick }} | Date: {{ x.ux * 1000 | date:'yyyy-MM-dd' }} {{ x.ux * 1000 | date:'HH:mm' }} CET+1
{{ x.comment }}

Copyright 2024, cxsecurity.com

 

Back to Top