Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Google Talk 'http' and 'mailto' Remote Script Code Injection Vulnerability

Google Talk is prone to a remote script-injection vulnerability because it fails to properly sanitize user-supplied input.

An attacker can exploit these issues to execute arbitrary HTML or script code within the context of the affected application.

Google 1.0.0.105 is vulnerable; other versions may also be affected.







 

Privacy Statement
Copyright 2009, SecurityFocus