Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
EasyCMS vulnerable to XSS injection. Jan 29 2006 08:42PM
preben watchcom no
The Norwegian web-publishing system EasyCMS (www.easycms.no) contains multiple input flaws letting users conduct successful XSS attacks. Both in the admin section, and the webpage that uses the system is vulnerable to XSS.

It does not filter script tags and simple scripting like <script>alert(?XSS?...

[ more ]  





 

Privacy Statement
Copyright 2009, SecurityFocus