CVE-2008-6645
Opencosmo Visualsentinel - XSS
Title source: ruleDescription
Cross-site scripting (XSS) vulnerability in Opencosmo VisualSentinel 0.7 allows remote attackers to inject arbitrary web script or HTML via the User-Agent header ($_SERVER ['HTTP_USER_AGENT']), which is not properly handled when displaying log files.
Scores
EPSS
0.0025
EPSS Percentile
48.5%
Classification
CWE
CWE-79
Status
published
Affected Products (2)
opencosmo/visualsentinel
n/a/n/a
Timeline
Published
Apr 07, 2009
Tracked Since
Feb 18, 2026