Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
[oCERT-2008-012] Horde, Popoon frameworks common inputsanitization errors (XSS) Sep 10 2008 05:00PM
Will Drewry (redpig ocert org)

#2008-012 Horde, Popoon frameworks common input sanitization errors (XSS)

Two cross-site scripting (XSS) vulnerabilities were reported in Horde
Framework. The first of which is that the Horde framework fails to properly
sanitize the filename of MIME attachments on received emails. The second
vuln...

[ more ]  





 

Privacy Statement
Copyright 2009, SecurityFocus