|
|
| |
|
| |
moin: cross-site scripting
| Package(s): | moin |
CVE #(s): | |
| Created: | June 14, 2010 |
Updated: | June 29, 2010 |
| Description: |
From the Red
Hat bugzilla:
A possible reflected cross-site scripting attack was discovered in Moin.
An attacker able to cause a user to follow a specially crafted malicious link
may be able to recover session identifiers or exploit browser vulnerabilities,
due to a vulnerable template parameter. The upstream bug report links to
patches to correct the flaw. |
| Alerts: |
|
( Log in to post comments)
|
|
|