Cross-site scripting (XSS) vulnerability in YaPig 0.95 and earlier allows remote attackers to inject arbitrary web script or HTML via EXIF data, such as the Camera Model Tag.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2005-08-30 11:45
Updated : 2024-02-28 10:42
NVD link : CVE-2005-2736
Mitre link : CVE-2005-2736
CVE.ORG link : CVE-2005-2736
JSON object : View
Products Affected
yapig
- yapig
CWE