|
|
Log in / Subscribe / Register

loggerhead: cross-site scripting

Package(s):loggerhead CVE #(s):CVE-2011-0728
Created:April 4, 2011 Updated:April 6, 2011
Description: From the CVE entry:

Cross-site scripting (XSS) vulnerability in templatefunctions.py in Loggerhead before 1.18.1 allows remote authenticated users to inject arbitrary web script or HTML via a filename, which is not properly handled in a revision view.

Alerts:
Fedora FEDORA-2011-4107 loggerhead 2011-03-25
Fedora FEDORA-2011-4085 loggerhead 2011-03-25

to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds