Security Advisory

CVE-2011-4923

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2012-02-18 00:00:00
Last updated 2024-08-07 00:23:38
Assigner redhat
CVSS score not scored
State PUBLISHED

Description

Cross-site scripting (XSS) vulnerability in View.pm in BackupPC 3.0.0, 3.1.0, 3.2.0, 3.2.1, and possibly earlier allows remote attackers to inject arbitrary web script or HTML via the num parameter in a view action to index.cgi, related to the log file viewer, a different vulnerability than CVE-2011-3361.