Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

OpenConf Paper Submission HTML Injection Vulnerability

OpenConf is prone to an HTML injection vulnerability. This is due to insufficient validation of data supplied through paper submissions within the OpenConf system.

This may permit an attacker to inject hostile HTML and script code into the session of a user who is reviewing the submitted paper. Theft of cookie-based credentials is possible in addition to other attacks.







 

Privacy Statement
Copyright 2008, SecurityFocus