This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Detail
Vendor pro2col First view 2008-09-22
Product Stingray Fts Last view 2022-03-28
Version Type Application
Update  
Edition  
Language  
Sofware Edition  
Target Software  
Target Hardware  
Other  

Activity : Overall

COMMON PLATFORM ENUMERATION: Repartition per Version

CPE Name Affected CVE
cpe:2.3:a:pro2col:stingray_fts:*:*:*:*:*:*:*:* 1
cpe:2.3:a:pro2col:stingray_fts:-:*:*:*:*:*:*:* 1

Related : CVE

  Date Alert Description
6.1 2022-03-28 CVE-2008-10001

A vulnerability, which was classified as problematic, has been found in Pro2col Stingray FTS. The manipulation of the argument Username leads to cross site scripting. The attack may be initiated remotely. It is recommended to upgrade the affected component. NOTE: This vulnerability only affects products that are no longer supported by the maintainer

4.3 2008-09-22 CVE-2008-4168

Cross-site scripting (XSS) vulnerability in verify_login.jsp in Pro2col Stingray FTS allows remote attackers to inject arbitrary web script or HTML via the form_username parameter (aka user name field).

CWE : Common Weakness Enumeration

%idName
100% (2) CWE-79 Failure to Preserve Web Page Structure ('Cross-site Scripting')

Open Source Vulnerability Database (OSVDB)

id Description
48110 StingRay FTS verify_login.jsp form_username Parameter XSS