Blosxom Writeback Plug-in HTML...

- AV AC AU C I A
发布: 2004-06-08
修订: 2025-04-13

Blosxom is prone to an HTML injection vulnerability. This issue presents itself when Blosxom is used in combination with the 'writeback' plug-in. This can allow an attacker to inject HTML and script code when posting comments on a vulnerable site. A successful attack can allow an attacker to steal cookie-based authentication credentials. Other attacks are possible as well. Blosxom version 2.0 is affected by this issue, however, other versions could be vulnerable as well.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息