|
|
| |
|
| |
moin: cross-site scripting
| Package(s): | moin |
CVE #(s): | CVE-2010-2487
|
| Created: | August 3, 2010 |
Updated: | August 25, 2010 |
| Description: |
From the Debian advisory:
It was discovered that moin, a python clone of WikiWiki, does not sufficiently sanitize parameters when passing them to the add_msg function. This allows a remote attackers to conduct cross-site scripting (XSS) attacks for example via the template parameter.
|
| Alerts: |
|
( Log in to post comments)
|
|
|