Required CVE Record Information
Description
Cross-site scripting (XSS) vulnerability in preview in the reviews section in PostNuke 0.764 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
References 5 Total
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 5 Total
- osvdb.org: 35473 vdb-entryx_transferred
- archives.neohapsis.com: 20070118 The vulnerabilities festival ! mailing-listx_transferred
- http://noc.postnuke.com/plugins/scmsvn/viewcvs.php/trunk/Historic/PostNuke7x/html/modules/?root=postnuke x_transferred
- securityfocus.com: 22119 vdb-entryx_transferred
- http://www.hackers.ir/advisories/festival.txt x_transferred