e-Zone FuseTalk搜索结果跨站脚本漏洞

漏洞信息详情

e-Zone FuseTalk搜索结果跨站脚本漏洞

漏洞简介

FuseTalk 2.0 和3.0版本存在跨站脚本(XSS)漏洞。远程攻击者可以注入任意HTML和web脚本。

漏洞公告

The vendor has reported that a patch is available for all affected customers. Customers are advised to login to the client area of the vendor site, and navigate to the patch page where they can obtain the appropriate patch. Customers are advised to contact the vendor for further details.

参考网址

来源: BID
名称: 5236
链接:http://www.securityfocus.com/bid/5236

来源: XF
名称: fusetalk-search-xss(9637)
链接:http://www.iss.net/security_center/static/9637.php

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享