RSS   Vulnerabilities for 'Milliscripts'   RSS

2008-01-03
 
CVE-2007-6641

CWE-79
 

 
Cross-site scripting (XSS) vulnerability in dir.php in milliscripts Redirection allows remote attackers to inject arbitrary web script or HTML via the cat parameter in a browse action.

 
2005-12-11
 
CVE-2005-4161

CWE-79
 

 
** DISPUTED ** Multiple cross-site scripting (XSS) vulnerabilities in MilliScripts 1.4 redirect script allow remote attackers to inject arbitrary web script or HTML via the domainname parameter to register.php, and other unspecified vectors. NOTE: the vendor has disputed this issue, stating "No invalid input can reach the script."

 


Copyright 2024, cxsecurity.com

 

Back to Top