DotNetNuke Prior to 4.8.4 Multiple HTML Injection and Cross-Site Scripting Vulnerabilities

Bugtraq ID: 29686
Class: Input Validation Error
CVE: CVE-2008-6732
CVE-2008-6733
Remote: Yes
Local: No
Published: Jun 12 2008 12:00AM
Updated: Apr 29 2009 04:46PM
Credit: AmnPardaz Security Research & Penetration Testing Group and Mauricio Marquez
Vulnerable: DotNetNuke DotNetNuke 4.8.3
DotNetNuke DotNetNuke 4.8.2
DotNetNuke DotNetNuke 4.8.1
DotNetNuke DotNetNuke 4.3.5
DotNetNuke DotNetNuke 4.0
Not Vulnerable: DotNetNuke DotNetNuke 4.8.4


 

Privacy Statement
Copyright 2010, SecurityFocus