CVE-2005-3818 | vTiger CRM 4.2 Input Fields index.php _server cross site scripting (EDB-26584 / Nessus ID 20317)
A vulnerability classified as problematic was found in vTiger CRM 4.2. This affects an unknown function of the file index.php of the component Input Fields. The manipulation of the argument _server results in basic cross site scripting.
This vulnerability is known as CVE-2005-3818. It is possible to launch the attack remotely. Furthermore, an exploit is available.
Upgrading the affected component is advised.