CVE-2001-1352 Information

Description

Cross-site scripting vulnerability in Namazu 2.0.9 and earlier allows remote attackers to execute arbitrary Javascript as other web users via an error message that is returned when an invalid index file is specified in the idxname parameter.

Reference

http://marc.info/?l=bugtraq&m=100947261916155&w=2 http://marc.info/?l=bugtraq&m=101060476404565&w=2 http://marc.info/?l=bugtraq&m=101068116016472&w=2 http://www.osvdb.org/5691 https://exchange.xforce.ibmcloud.com/vulnerabilities/7875

Share on: