Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

MTCMS Multiple Input Validation Vulnerabilities

MTCMS is prone to multiple input-validation issues, including two arbitrary-file-upload vulnerabilities and two HTML-injection vulnerabilities.

Attackers can exploit these issues to execute arbitrary HTML or script code in the context of the webserver process.

Exploiting these issues may allow attackers to compromise the application and the underlying system or to steal cookie-based authentication credentials; other attacks are also possible.







 

Privacy Statement
Copyright 2009, SecurityFocus