Multiple cross-site scripting (XSS) vulnerabilities in Centra 7 allow remote attackers to inject arbitrary web script or HTML via the (1) username, (2) first name, or (3) last name fields.
Link | Tags |
---|---|
http://secunia.com/advisories/14930 | third party advisory vendor advisory |
http://marc.info/?l=bugtraq&m=111335198125566&w=2 | mailing list |