Cross-site scripting vulnerability in Namazu 2.0.9 and earlier allows remote attackers to execute arbitrary Javascript as other web users via an error message that is returned when an invalid index file is specified in the idxname parameter.
References
Configurations
History
20 Nov 2024, 23:37
Type | Values Removed | Values Added |
---|---|---|
References | () http://marc.info/?l=bugtraq&m=100947261916155&w=2 - | |
References | () http://marc.info/?l=bugtraq&m=101060476404565&w=2 - | |
References | () http://marc.info/?l=bugtraq&m=101068116016472&w=2 - | |
References | () http://www.osvdb.org/5691 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/7875 - |
Information
Published : 2001-12-27 05:00
Updated : 2024-11-20 23:37
NVD link : CVE-2001-1352
Mitre link : CVE-2001-1352
CVE.ORG link : CVE-2001-1352
JSON object : View
Products Affected
namazu
- namazu
CWE