LWN.net Logo

moin: cross-site scripting

Package(s):moin CVE #(s):
Created:June 14, 2010 Updated:June 29, 2010
Description: From the Red Hat bugzilla:

A possible reflected cross-site scripting attack was discovered in Moin. An attacker able to cause a user to follow a specially crafted malicious link may be able to recover session identifiers or exploit browser vulnerabilities, due to a vulnerable template parameter. The upstream bug report links to patches to correct the flaw.

Alerts:
Fedora FEDORA-2010-10550 2010-06-29
Fedora FEDORA-2010-9857 2010-06-14
Fedora FEDORA-2010-9876 2010-06-14

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds