CVE-2007-6002 Information

Description

Cross-site scripting (XSS) vulnerability in Fenriru (1) Sleipnir 2.5.17 R2 and earlier and (2) Grani 3.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the Search field in a search for additions to the Favorites section.

Reference

http://jvn.jp/jp/JVN2365427327/index.html http://osvdb.org/38875 http://osvdb.org/38876 http://secunia.com/advisories/27655 http://secunia.com/advisories/27675 http://www.fenrir.co.jp/grani/note.html http://www.fenrir.co.jp/sleipnir/note.html http://www.securityfocus.com/bid/26418 https://exchange.xforce.ibmcloud.com/vulnerabilities/38441

Share on: