Cross-site scripting (XSS) vulnerability in Ar-blog 5.2 and earlier allows remote attackers to inject arbitrary web script or HTML via a blog comment.
Link | Tags |
---|---|
http://secunia.com/advisories/17307 | third party advisory |
http://securitytracker.com/id?1015100 | vendor advisory vdb entry exploit |
http://lists.grok.org.uk/pipermail/full-disclosure/2005-October/038133.html | vendor advisory mailing list |
http://www.securityfocus.com/bid/15201 | vdb entry |