Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Eliteman

Researcher fromAnatolia Security
#51052of 53,622
4.3Total CVSS
Vulnerabilities · 1
PT-2011-1740
4.3
2011-04-27
Open Cit · Open It Overlook · CVE-2010-4792
**Name of the Vulnerable Software and Affected Versions** OPEN IT OverLook version 5.0 **Description** A cross-site scripting (XSS) issue exists, allowing remote attackers to inject arbitrary web script or HTML. This is achieved via the `frame` parameter in the title.php file. **Recommendations** For OPEN IT OverLook version 5.0, consider restricting access to the title.php file or disabling the `frame` parameter to minimize the risk of exploitation until a patch is available.