MidnightBSD

Advisories for atlas_systems

CVE-2014-7290 MEDIUM

Multiple cross-site scripting (XSS) vulnerabilities in Atlas Systems Aeon 3.5 and 3.6 allow remote attackers to inject arbitrary web script or HTML via the (1) Action or (2) Form parameter to aeon.dll.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-79,

Products Affected

Vendor Product Version
atlas_systems aeon 3.5
atlas_systems aeon 3.6