RSS   Vulnerabilities for 'Photoblog'   RSS

2007-06-08
 
CVE-2007-3135

CWE-Other
 

 
Cross-site scripting (XSS) vulnerability in atomPhotoBlog.php in Atom Photoblog 1.0.9 and earlier allows remote attackers to inject arbitrary web script or HTML via the tag parameter.

 
 
CVE-2007-3134

 

 
Multiple cross-site scripting (XSS) vulnerabilities in atomPhotoBlog.php in Atom PhotoBlog 1.0.9 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) Your Name, (2) Your Homepage, and (3) Your Comment fields, when using "Approve Comments."

 

 >>> Vendor: ATOM 2 Products
Photoblog
Electron


Copyright 2024, cxsecurity.com

 

Back to Top