CVE-2007-1418 Information

Description

Cross-site scripting (XSS) vulnerability in skins/ace/popup-notopic.php in MindTouch OpenGarden DekiWiki before Gooseberry++ allows remote attackers to inject arbitrary web script or HTML via the message parameter.

Reference

http://secunia.com/advisories/24453 http://sourceforge.net/project/shownotes.php?group_id=173074&release_id=492249 http://www.securityfocus.com/bid/22891 http://www.vupen.com/english/advisories/2007/0899 https://exchange.xforce.ibmcloud.com/vulnerabilities/32893

Share on: