Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
bblog 0.7.2 cross site scripting Mar 26 2004 08:08PM
penfold dlofnep com


Introduction:

Bblog, a blogging system scripted in PHP does not perform sufficient filtering when submitting a blog name. The severity of this flaw however, is low as the required privileges to access the administration panel for bblog is superuser.

The problem:

The flaw lies in bblog/index.p...

[ more ]  





 

Privacy Statement
Copyright 2009, SecurityFocus