|
|

CVE Reference: CVE-2004-1075 |
|
| NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE. | |
|
Original Page at CVE MITRE: CVE-2004-1075 |
|
|
Description: Cross-site scripting (XSS) vulnerability in standard_error_message.dtml for Zwiki after 0.10.0rc1 to 0.36.2 allows remote attackers to inject arbitrary HTML and web script via a malformed URL, which is not properly cleansed when generating an error message. |
|
|
CVE Status: Candidate |
|
|
References: XF http://xforce.iss.net/xforce/xfdb/18237 GENTOO http://www.gentoo.org/security/en/glsa/glsa-200412-23.xml CONFIRM http://zwiki.org/925ZwikiXSSVulnerability BUGTRAQ http://marc.theaimsgroup.com/?l=bugtraq&m=110138568212036&w=2 http://marc.theaimsgroup.com/?l=bugtraq&m=110149122529761&w=2 BID 11745 |
|
| Return to the previous page. |
Not a customer already?Learn more about how our market leading Vulnerability Management solutions can help you manage risk and ensure compliance. |