Unrated severityNVD Advisory· Published Feb 5, 2009· Updated Apr 23, 2026
CVE-2008-6060
CVE-2008-6060
Description
Cross-site scripting (XSS) vulnerability in ActionScript in arbitrary Shockwave Flash (SWF) files created by InfoSoft FusionCharts allows remote attackers to inject arbitrary additional SWF content via a URL in the SRC attribute of an IMG element in the dataURL parameter.
Affected products
1- cpe:2.3:a:infosoftglobal:fusion_charts:*:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5News mentions
0No linked articles in our index yet.