Computer Security
[EN] securityvulns.ru
no-pyccku



CVECVE-2008-2553
StatusCandidate
DescriptionCross-site scripting (XSS) vulnerability in Slashdot Like Automated Storytelling Homepage (Slash) (aka Slashcode) R_2_5_0_94 and earlier allows remote attackers to inject arbitrary web script or HTML via the userfield parameter.
PhaseAssigned (05.06.2008)
NVD:http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-2553
ReferencesCONFIRM : http://slashcode.cvs.sourceforge.net/slashcode/sla...
 CONFIRM : http://www.slashcode.com/article.pl?sid=08/01/04/1...
 CONFIRM : http://www.slashcode.com/article.pl?sid=08/01/07/2...
 SECUNIA : 30551
SecurityVulns:Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod
 



Rating@Mail.ru