Vulnerability Description
Cross-site scripting (XSS) vulnerability in index.php in Starsgames Control Panel 4.6.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the st parameter.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| 4Shared | Starsgames Control Panel | <= 4.6.2 |
Related Weaknesses (CWE)
References
- http://secunia.com/advisories/30321Vendor Advisory
- http://www.securityfocus.com/archive/1/492264/100/0/threaded
- http://www.securityfocus.com/bid/29295Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/42544
- http://secunia.com/advisories/30321Vendor Advisory
- http://www.securityfocus.com/archive/1/492264/100/0/threaded
- http://www.securityfocus.com/bid/29295Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/42544
FAQ
What is CVE-2008-2458?
CVE-2008-2458 is a vulnerability with a CVSS score of 4.3 (MEDIUM). Cross-site scripting (XSS) vulnerability in index.php in Starsgames Control Panel 4.6.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the st parameter.
How severe is CVE-2008-2458?
CVE-2008-2458 has been rated MEDIUM with a CVSS base score of 4.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2008-2458?
Check the references section above for vendor advisories and patch information. Affected products include: 4Shared Starsgames Control Panel.