Cross-site scripting (XSS) vulnerability in Sawmill 7.0.0 through 7.1.13 allows remote attackers to inject arbitrary web script or HTML via the query string in an HTTP GET request.
Link | Tags |
---|---|
http://www.sawmill.net/version_history.html | |
http://www.nta-monitor.com/news/xss/sawmill/index.htm | exploit vendor advisory |
http://secunia.com/advisories/16744/ | third party advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/22206 | vdb entry |
http://marc.info/?l=bugtraq&m=112654659400488&w=2 | mailing list |
http://securityreason.com/securityalert/1 | third party advisory |