SWFUpload 'movieName' Parameter Cross Site Scripting Vulnerability

Bugtraq ID: 54245
Class: Input Validation Error
CVE: CVE-2012-3414
Remote: Yes
Local: No
Published: Jun 29 2012 12:00AM
Updated: Mar 25 2014 12:47AM
Credit: Nathan Partlan and Neal Poole
Vulnerable: WordPress NextGEN Gallery 1.9.1
WordPress NextGEN Gallery 1.8.4
WordPress NextGEN Gallery 1.8.3
WordPress Comment Extra Fields 1.7
Typo3 Typo3 4.6.6
Typo3 Typo3 4.6.1
Typo3 Typo3 4.6
Typo3 Typo3 4.5.13
Typo3 Typo3 4.5.8
Typo3 Typo3 4.5.7
Typo3 Typo3 4.5.5
Typo3 Typo3 4.7
Typo3 Typo3 4.6.8
Typo3 Typo3 4.6.2
Typo3 Typo3 4.5.9
Typo3 Typo3 4.5.6
Typo3 Typo3 4.5.6
Typo3 Typo3 4.5.4
Typo3 Typo3 4.5.3
Typo3 Typo3 4.5.2
Typo3 Typo3 4.5.15
Typo3 Typo3 4.5.1
Typo3 Typo3 4.5
Invision Power Services Invision Power Board 3.3.1
Invision Power Services Invision Power Board 3.3
Invision Power Services Invision Power Board 3.2.3
Invision Power Services Invision Power Board 3.2.2
Drupal Drupal 7.x-1.x-dev
Not Vulnerable:


 

Privacy Statement
Copyright 2010, SecurityFocus