Cross-site scripting (XSS) vulnerability in sign.php in codegrrl SimpBook 1.0, when html_enable is on, allows remote attackers to inject arbitrary web script or HTML via the message parameter to index.php.
Link | Tags |
---|---|
http://marc.info/?l=full-disclosure&m=113535570125766&w=2 | mailing list |
http://secunia.com/advisories/18256 | third party advisory vendor advisory |
http://www.securityfocus.com/bid/16053 | vdb entry |
http://www.securityfocus.com/bid/16058 | vdb entry |