Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Brim SQL Injection and HTML Injection Vulnerabilities

Brim is prone to multiple input-validation vulnerabilities, including multiple SQL-injection issues and an HTML-injection issue.

Attackers can exploit these issues to steal cookie-based authentication credentials from legitimate users of the site, modify the way the site is rendered, access or modify data, or exploit latent vulnerabilities in the underlying database.

Brim 2.0.0 is vulnerable; other versions may also be affected.







 

Privacy Statement
Copyright 2009, SecurityFocus