LiteSpeed Web Server Cross Site Scripting and Request Forgery Vulnerabilities

To exploit these issues, an attacker must entice an unsuspecting victim into following a malicious URI or visiting a malicious website.

A proof of concept for the cross-site request-forgery issue is available:


 

Privacy Statement
Copyright 2010, SecurityFocus