Sage IMG Element Input Validation Vulnerability

To exploit this issue, an attacker must entice a victim to subscribe to an RSS feed that contains malicious HTML and script code and then to read the malicious content with the affected application.

The following proofs of concept are available:


 

Privacy Statement
Copyright 2010, SecurityFocus