Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

K2News Management Ratings.PHP Cross-Site Scripting Vulnerability

k2News Management is prone to a cross-site scripting vulnerability because it fails to sufficiently sanitize user-supplied data.

Exploiting this issue could allow an attacker to steal cookie-based authentication credentials and to launch other attacks.







 

Privacy Statement
Copyright 2009, SecurityFocus