Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

DotText HTTP Referer HTML Injection Vulnerability

DotText (.Text) is prone to an HTML injection vulnerability. This issue may be exploited by submitting a client HTTP Referer field that contains hostile HTML and script code.

HTML injection may allow for theft of cookie-based authentication credentials or other attacks.







 

Privacy Statement
Copyright 2009, SecurityFocus