Unrated severityNVD Advisory· Published Aug 3, 2009· Updated Jun 16, 2026
CVE-2008-6894
CVE-2008-6894
Description
Multiple cross-site scripting (XSS) vulnerabilities in login.php in 3CX Phone System Free Edition 6.1793 and 6.0.806.0 allow remote attackers to inject arbitrary web script or HTML via the (1) fName and (2) fPassword parameters.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Patches
Vulnerability mechanics
References
5News mentions
0No linked articles in our index yet.