Re: XSS vulnerability in Theeta CMS

看板Bugtraq作者時間15年前 (2010/08/17 02:01), 編輯推噓0(000)
留言0則, 0人參與, 最新討論串4/4 (看更多)
: Vulnerability ID: HTB22489 : Reference: http://www.htbridge.ch/advisory/xss_vulnerability_in_theeta_cms_2.html : Vendor: MN Tech Solutions : Vulnerable Version: 0.0 : The vulnerability exists due to failure in the "forum.php" script to : properly sanitize user-supplied input in "forum" variable. Successful : exploitation of this vulnerability could result in a compromise of the : application, theft of cookie-based authentication credentials, : disclosure or modification of sensitive data. Disclosed on 2009-12-01 by c0dy[at]r00tDefaced.net, and assigned CVE-2009-4782.
文章代碼(AID): #1CQNpWau (Bugtraq)
文章代碼(AID): #1CQNpWau (Bugtraq)