Multiple cross-site scripting (XSS) vulnerabilities in weblog.pl in PerlBlog 1.09b and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) name and (2) email parameters.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/24691 | vdb entry |
http://www.securityfocus.com/archive/1/426260/100/0/threaded | mailing list |
http://evuln.com/vulns/81/summary.html | vendor advisory |
http://securityreason.com/securityalert/508 | third party advisory |
http://secunia.com/advisories/18924 | third party advisory |
http://www.securityfocus.com/bid/16707 | vdb entry |