cross-site scripting (XSS) in do_search.php in PROPS 0.6.1 consente agli aggressori remoti di inserire codice HTML arbitrario o uno script web tramite il parametro search_string. |
http://www.securityfocus.com/bid/10258 http://marc.info/?l=bugtraq&m=108342671616155&w=2 http://sourceforge.net/project/shownotes.php?group_id=29581&release_id=234433 https://exchange.xforce.ibmcloud.com/vulnerabilities/16035 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1979 |
Vulnerabilità: CVE-2004-1979
