Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

PAFileDB ID Variable Cross-Site Scripting Vulnerability

A cross-site scripting vulnerability has been reported in paFileDB.

An attacker may construct a malicious link to this web application containing embedded arbitrary HTML and script code. If a vistim user follows the link, the attacker may be able to steal cookie-based authentication credentials or launch other attacks.

This issue is reported to reside in version 3.x; other versions may be affected as well.







 

Privacy Statement
Copyright 2009, SecurityFocus