CVE

Id
14491  
CVE No.
CVE-2005-3285  
Status
Candidate  
Description
Cross-site scripting (XSS) vulnerability in comersus_backoffice_searchItemForm.asp in Comersus BackOffice Plus allows remote attackers to inject arbitrary web script or HTML via the (1) forwardTo1, (2) forwardTo2, (3) nameFT1, or (4) nameFT2 parameters.  
Phase
Assigned (20051023)  
Votes
None (candidate not yet proposed)  
Comments