Download
| Alert*
CVE-2013-4158
smokeping before 2.6.9 has XSS (incomplete fix for CVE-2012-0790) CVE-2013-4168 Cross-site scripting (XSS) vulnerability in SmokePing 2.6.9 in the start and end time fields. CVE-2012-0790 Cross-site scripting (XSS) vulnerability in smokeping_cgi in Smokeping 2.4.2, 2.6.6, and other versions before 2.6.7 allows remote attackers to inject arbitrary web script or HTML via the displaymode parameter. |