CVE-2006-1295 Information

Description

Cross-site scripting (XSS) vulnerability in recherche.php3 in SPIP 1.8.2-g allows remote attackers to inject arbitrary web script or HTML via the recherche parameter.

Reference

http://www.securityfocus.com/bid/17130 http://www.silitix.com/spip-xss.html http://www.zone-h.fr/advisories/read/id=1105 http://zone.spip.org/trac/spip-zone/changeset/1672 https://exchange.xforce.ibmcloud.com/vulnerabilities/25389

Share on: