It has been reported that the Zope error-handling framework may be prone to cross-site scripting vulnerabilities under some circumstances. It has been conjectured that problem may occur due to insufficient input validation of user-supplied URI parameters. An attacker may exploit this issue by enticing a web user to a malicious link, which contains hostile HTML or script code.
It has been reported that the Zope error-handling framework may be prone to cross-site scripting vulnerabilities under some circumstances. It has been conjectured that problem may occur due to insufficient input validation of user-supplied URI parameters. An attacker may exploit this issue by enticing a web user to a malicious link, which contains hostile HTML or script code.