|
|
| |
|
| |
rekonq: cross-site scripting
| Package(s): | rekonq |
CVE #(s): | CVE-2010-2536
|
| Created: | August 13, 2010 |
Updated: | September 3, 2010 |
| Description: |
From the CVE entry:
Multiple cross-site scripting (XSS) vulnerabilities in rekonq 0.5 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) a URL associated with a nonexistent domain name, related to webpage.cpp, aka a "universal XSS" issue; (2) unspecified vectors related to webview.cpp; and the about: views for (3) favorites, (4) bookmarks, (5) closed tabs, and (6) history.
References |
| Alerts: |
|
( Log in to post comments)
|
|
|