Plone 'LiveSearch' Module HTML Injection Vulnerability
|
Bugtraq ID:
|
27098
|
|
Class:
|
Input Validation Error
|
|
CVE:
|
|
|
Remote:
|
Yes
|
|
Local:
|
No
|
|
Published:
|
Jan 02 2008 12:00AM
|
|
Updated:
|
Jan 04 2008 05:59PM
|
|
Credit:
|
ilmila is credited with the discovery of this vulnerability.
|
|
Vulnerable:
|
Plone Plone 3.0.3
Plone Plone 3.0.2
Plone Plone 3.0.1
Plone Plone 2.5.4
Plone Plone 2.5.1
Plone Plone 2.1.2
Plone Plone 2.0.5
Plone Plone 2.0.4
Plone Plone 3.0
Plone Plone 2.5-beta1
Plone Plone 2.5
|
|
|
|
Not Vulnerable:
|
Plone Plone 3.0.4
|
|