CVE-2006-4088 Information

Description

Multiple cross-site scripting (XSS) vulnerabilities in CivicSpace 0.8.5 allow remote attackers to inject arbitrary web script or HTML via the (1) Subject (2) Comment and (3) Add new comment sections.

Reference

http://securityreason.com/securityalert/1357 http://www.securityfocus.com/archive/1/442704/100/0/threaded http://www.securityfocus.com/bid/19438 https://exchange.xforce.ibmcloud.com/vulnerabilities/28303

Share on: