CVE-2007-1132 Information

Description

Multiple cross-site scripting (XSS) vulnerabilities in the \Contact Us\ functionality in MTCMS 2.2 allow remote attackers to inject arbitrary web script or HTML via the (1) message and (2) title fields.

Reference

http://osvdb.org/37443 http://www.securityfocus.com/archive/1/461330/100/100/threaded http://www.securityfocus.com/bid/22690 http://www.vupen.com/english/advisories/2007/0755

Share on: