My Little Weblog Weblog.php Cross-Site Scripting Vulnerability

An attacker can exploit this vulnerability via a web client.

The following proof-of-concept URI is available:

www.example.com/weblog.php?action="><script>alert('XSS')</script><


 

Privacy Statement
Copyright 2010, SecurityFocus