Faq-O-Matic Multiple Cross-Site Scripting Vulnerabilities

An exploit is not required.

The following proof of concept URI are available:
http://www.example.com/fom.cgi?cmd=recent&file=1&showLastModified=show&_submit=Show+documents&_duration=[code]
http://www.example.com/fom.cgi?file=[code]&showLastModified=show
http://www.example.com/fom.cgi?_insert=answer&cmd=[code]&file=1


 

Privacy Statement
Copyright 2010, SecurityFocus