Vulnerability Bulletins |
DSA-2882 extplorer - security update |
|
| Affected software | Debian |
|
Multiple cross-site scripting (XSS) vulnerabilities have been discoveredin extplorer, a web file explorer and manager using Ext JS.A remote attacker can inject arbitrary web script or HTML code via acrafted string in the URL to application.js.php, admin.php, copy_move.php,functions.php, header.php and upload.php. More info: http://www.debian.org/security/2014/dsa-2882 |
|






