CVE-2008-4742
Timetrex - XSS
Title source: ruleDescription
Multiple cross-site scripting (XSS) vulnerabilities in interface/Login.php in TimeTrex 2.2.11 allow remote attackers to inject arbitrary web script or HTML via the (1) password and (2) user_name parameters.
Exploits (1)
References (6)
Scores
EPSS
0.0047
EPSS Percentile
64.5%
Classification
CWE
CWE-79
Status
published
Affected Products (2)
timetrex/timetrex
n/a/n/a
Timeline
Published
Oct 27, 2008
Tracked Since
Feb 18, 2026