CVE-2005-3494 Information

Description

Cross-site scripting (XSS) vulnerability in Ar-blog 5.2 and earlier allows remote attackers to inject arbitrary web script or HTML via a blog comment.

Reference

http://lists.grok.org.uk/pipermail/full-disclosure/2005-October/038133.html http://secunia.com/advisories/17307 http://securitytracker.com/id?1015100 http://www.securityfocus.com/bid/15201

Share on: