Cross-site scripting (XSS) vulnerability in Greymatter allows remote attackers to inject arbitrary web script or HTML via a post comment, which is recorded in a log file but not properly handled when the administrator uses "View Control Panel Log" to read the log file.
Link | Tags |
---|---|
http://marc.info/?l=bugtraq&m=112551307528929&w=2 | mailing list |