CVE-2009-4237 | Teamst TestLink up to 1.8.4 login.php Summary cross site scripting (EDB-10364 / Nessus ID 43101)
A vulnerability described as problematic has been identified in Teamst TestLink up to 1.8.4. The affected element is an unknown function in the library lib/general/staticPage.php of the file login.php. Executing manipulation of the argument Summary can lead to cross site scripting.
This vulnerability is tracked as CVE-2009-4237. The attack can be launched remotely. Moreover, an exploit is present.
Upgrading the affected component is recommended.