Multiple cross-site scripting (XSS) vulnerabilities in Free LAN In(tra|ter)net Portal (FLIP) before 1.0-RC2 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors in (1) inc.page.php and (2) inc.text.php.
Link | Tags |
---|---|
http://osvdb.org/36682 | vdb entry |
http://www.vupen.com/english/advisories/2007/0360 | vdb entry |
http://osvdb.org/36683 | vdb entry |
http://sourceforge.net/project/shownotes.php?release_id=480714&group_id=98260 |