Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

DGbook HTML Injection Vulnerabilities

DGbook is prone to multiple HTML-injection vulnerabilities because it fails to properly sanitize HTML and script code from user-supplied input to the Name, Homepage, and Address fields.

An attacker could exploit this vulnerability to inject hostile HTML and script code into the browser session of other users of the application.







 

Privacy Statement
Copyright 2009, SecurityFocus