Cross-site scripting (XSS) vulnerability in index.php in DGBook 1.0 allows remote attackers to inject arbitrary web script or HTML via the (1) name, (2) homepage, (3) email, and (4) address parameters.
Link | Tags |
---|---|
http://www.osvdb.org/25732 | vdb entry |
http://www.securityfocus.com/archive/1/436615/100/0/threaded | mailing list |
http://www.securityfocus.com/archive/1/434869/100/0/threaded | mailing list |
http://www.securityfocus.com/bid/18310 | vdb entry |
http://secunia.com/advisories/20201 | third party advisory vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/26629 | vdb entry |
http://securityreason.com/securityalert/948 | third party advisory |
http://www.vupen.com/english/advisories/2006/1942 | vdb entry |