![]() | |
| |||||||
| Home | Register | Projects | Blogs | FAQ | Calendar | Search | Today's Posts | Mark Forums Read | Free Directory | Free DNSReport | Tags |
| Notices |
| Advisories Discuss about all newly security flaws classed by CVE entries and reviewed by security experts |
CVE-2008-1061 (Sniplets Plugin)This is a discussion on "CVE-2008-1061 (Sniplets Plugin)" within the Advisories part of the Computer Security: Discussions section; Multiple cross-site scripting (XSS) vulnerabilities in the Sniplets 1.1.2 and 1.2.2 plugin for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) text parameter to (a) warning.php, (b) notice.... |
![]() |
| | LinkBack | Thread Tools | Display Modes |
| |||
| Multiple cross-site scripting (XSS) vulnerabilities in the Sniplets 1.1.2 and 1.2.2 plugin for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) text parameter to (a) warning.php, (b) notice.php, and (c) inset.php in view/sniplets/, and possibly (d) modules/execute.php; the (2) url parameter to (e) view/admin/submenu.php; and the (3) page parameter to (f) view/admin/pager.php. More... |
| Sponsor | ||
| ||
| |
![]() |
| Thread Tools | |
| Display Modes | |
| |
Similar Threads | ||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| CVE-2008-1060 (Sniplets Plugin) | Heap | Advisories | 0 | 28-02-08 22:17 |
| CVE-2008-1059 (Sniplets Plugin) | Heap | Advisories | 0 | 28-02-08 22:17 |
| Wordpress Plugin Sniplets 1.1.2 (RFI/XSS/RCE) Multiple Vulnerabilities | Heap | Public | 0 | 27-02-08 05:34 |