Flyspray Multiple Information Disclosure, HTML Injection, and Cross-Site Scripting Vulnerabilities
|
Bugtraq ID:
|
28076
|
|
Class:
|
Input Validation Error
|
|
CVE:
|
|
|
Remote:
|
Yes
|
|
Local:
|
No
|
|
Published:
|
Mar 03 2008 12:00AM
|
|
Updated:
|
Mar 03 2008 08:32PM
|
|
Credit:
|
Digital Security Research Group is credited with the discovery of these vulnerabilities.
|
|
Vulnerable:
|
Flyspray Flyspray 0.9.9 2
Flyspray Flyspray 0.9.9 .4
Flyspray Flyspray 0.9.9 .3
Flyspray Flyspray 0.9.9
Flyspray Flyspray 0.9.9.1
|
|
|
|
Not Vulnerable:
|
Flyspray Flyspray 0.9.9 .5
|
|