Secunia Logo
Netsikker nu! 2008
 
CVE Reference: CVE-2007-6110
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2007-6110

Description:
Cross-site scripting (XSS) vulnerability in htsearch in htdig 3.2.0b6 allows remote attackers to inject arbitrary web script or HTML via the sort parameter.

CVE Status:
Candidate

References:

SUSE
  http://www.novell.com/linux/security/advisories/2007_25_sr.html

ST
  1019010

SAID
  Secunia Advisory: SA27850
  Secunia Advisory: SA27890
  Secunia Advisory: SA28062
  Secunia Advisory: SA27965

REDHAT
  http://www.redhat.com/support/errata/RHSA-2007-1095.html

MISC
  http://sourceforge.net/mailarchive/forum.php?thread_name=200709251310.55835.mskibbe%40suse.de&forum_name=htdig-dev

FEDORA

DEBIAN
  http://www.debian.org/security/2007/dsa-1429

CONFIRM
  http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=453278

BID
  26610


Return to the previous page.