Heap
08-01-09, 03:37
Multiple cross-site scripting (XSS) vulnerabilities in KnowledgeTree before 3.5.4a allow remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different issue than CVE-2007-4281.
More... (http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2008-5858)
More... (http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2008-5858)