VWar Multiple Cross Site Scripting Vulnerabilities

VWar is prone to multiple cross-site scripting vulnerabilities because the application fails to sufficiently sanitize user-supplied input.

An attacker can exploit these issues to steal cookie-based authentication credentials and launch other attacks.

VWar 1.5.0 R15 and prior versions are vulnerable to these issues.


 

Privacy Statement
Copyright 2010, SecurityFocus