exploits , vulnerabilities , articles , S9Y Serendipity Remote RSS sidebar Plugin Cross Site Scripting Vulnerability
| Title |
S9Y Serendipity Remote RSS sidebar Plugin Cross Site Scripting Vulnerability |
| Published |
2007-12-08-12:00AM |
| Updated |
2008-03-24-11:30PM |
| Class |
Input Validation Error |
| CVE |
CVE-2007-6205 |
| Remote |
Yes |
| Local |
No |
| Credit |
Hanno B?śck is credited with the discovery of this vulnerability. |
| Vulnerable |
S9Y Serendipity 1.1.4 S9Y Serendipity 1.1.3 S9Y Serendipity 1.1.1 S9Y Serendipity 1.0.4 S9Y Serendipity 1.0.3 S9Y Serendipity 0.9.1 S9Y Serendipity 0.8.2 S9Y Serendipity 0.8.1 S9Y Serendipity 0.8 beta6 Snapshot S9Y Serendipity 0.8 beta6 S9Y Serendipity 0.8 beta5 S9Y Serendipity 0.8 S9Y Serendipity 0.7.1 S9Y Serendipity 0.7 beta3 S9Y Serendipity 0.7 beta1 S9Y Serendipity 0.7 rc1 S9Y Serendipity 0.7 beta4 S9Y Serendipity 0.7 beta2 S9Y Serendipity 0.7 S9Y Serendipity 0.6 rc2 S9Y Serendipity 0.6 rc1 S9Y Serendipity 0.6 pl3 S9Y Serendipity 0.6 pl2 S9Y Serendipity 0.6 pl1 S9Y Serendipity 0.6 S9Y Serendipity 0.5 pl1 S9Y Serendipity 0.5 S9Y Serendipity 0.4 S9Y Serendipity 0.3 S9Y Serendipity 1.2beta5 S9Y Serendipity 1.2 S9Y Serendipity 1.0.beta 3 S9Y Serendipity 1.0.beta 2 Debian Linux 4.0 sparc Debian Linux 4.0 s/390 Debian Linux 4.0 powerpc Debian Linux 4.0 mipsel Debian Linux 4.0 mips Debian Linux 4.0 m68k Debian Linux 4.0 ia64 Debian Linux 4.0 ia32 Debian Linux 4.0 hppa Debian Linux 4.0 arm Debian Linux 4.0 amd64 Debian Linux 4.0 alpha Debian Linux 4.0
|
| Not Vulnerable |
S9Y Serendipity 1.2.1
|
| Code |
An attacker can exploit this issue by constructing a malicious RSS feed that is embedded into a blog and displayed to users. |
| TXT |
 |
|
Advertising
|
|
Copyright 2007,
SecurityDot
Wed, 16 Dec 2009 15:17:28 +0000
Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS
EXPLOITS
VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
sax.com. /modules/m 89.Gom Saxy movie www.xxzxft all cartoo Powered by hot sexy p administra exploit mo Arabia sex guorg1958 1componen pho donky and ppt Yahoomail. www.sexy g B DTMAIL 200 /compo search/exp Show the v dav class8 Nudebollyw administra Yahoomail. Lust Bob mar le www.31755. sania mirz www.sss001 windows xp INDIANSEX4 kamapisach Www.deseba www.Sexy+s 200 /compo pass hack Telugu fuc 200 /compo microsoft Www.deseba Www.sexfil 200+%252Fc php-nuke+2 1110 news for c cartoonnet SEXZOO
|