|
|
Log in / Subscribe / Register

php-zendframework: cross-site scripting

Package(s):php-ZendFramework CVE #(s):
Created:March 14, 2011 Updated:March 16, 2011
Description: From the Zend Framework advisory:

The default error handling view script generated using Zend_Tool failed to escape request parameters when run in the "development" configuration environment, providing a potential XSS attack vector.

Alerts:
Fedora FEDORA-2011-2678 php-ZendFramework 2011-03-05
Fedora FEDORA-2011-2689 php-ZendFramework 2011-03-05

to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds