Cross-site scripting (XSS) vulnerability in dotProject before 2.1 RC2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2006-2851 and CVE-2006-3240.
Link | Tags |
---|---|
http://osvdb.org/36381 | vdb entry |
http://www.vupen.com/english/advisories/2007/2214 | vdb entry |
http://jvn.jp/jp/JVN%2363602912/index.html | third party advisory patch |
http://www.securityfocus.com/bid/24472 | vdb entry |
http://sourceforge.net/project/shownotes.php?release_id=510005&group_id=21656 | patch |
http://secunia.com/advisories/25638 | third party advisory vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/34865 | vdb entry |