Bugtraq mailing list archives

XSS on XRMS- open source CRM


From: vijayv () cascentral com
Date: 28 Feb 2008 17:24:00 -0000

XRMS: An open source web enabled LAMP based CRM.
Vulnerability: Confirmation messages upon updates in XRMS are clear text passed across in the URL. Simple test of 
injection of a script resulted in exposing cross site scripting vulnerability.


Current thread: