Multiple unspecified cross-site scripting vulnerabilities have been reported in Cloisterblog. These issues could permit theft of cookie-based authentication credentials or other attacks. This is due to insufficient sanitization of URI parameters, whose input will be included in dynamically generated web pages. An attacker could exploit these issues by enticing a victim user to follow a malicious link to a vulnerable site.
Multiple unspecified cross-site scripting vulnerabilities have been reported in Cloisterblog. These issues could permit theft of cookie-based authentication credentials or other attacks. This is due to insufficient sanitization of URI parameters, whose input will be included in dynamically generated web pages. An attacker could exploit these issues by enticing a victim user to follow a malicious link to a vulnerable site.