|
Flyspray Multiple Cross-Site Scripting Vulnerabilities
No exploit is required. Example URI have been provided: http://www.example.com/index.php?PHPSESSID=270ca5a0f7c1e5b2fd4c 52b34cdfe546&tasks=&project=1&string=lala&type=&sev=&due= &dev=&cat=&status=&perpage=20 http://www.example.com/index.php?tasks=all%22%3E%3Cscript %3Ealert%28%29%3C%2Fscript%3E&project=0 http://www.example.com/index.php?order=sev&project=1&tasks=&type= &sev=&dev=&cat=&status=&due=&string=&perpage=20&pagenum=0& sort=desc&order2=&sort2=desc |
|
|
Privacy Statement |