Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2007-6390 (Serendipity)

BugsAlert Home > CVE-2007-6390 (Serendipity)
 
 

Cross-site request forgery (CSRF) vulnerability in the mycalendar plugin before 0.13, a plugin for Serendipity, allows remote attackers to perform actions as blog administrators, which can be leveraged to conduct cross-site scripting (XSS) attacks on the blog page.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-6390

Learn more about CVE-2007-6390 (Serendipity)
 
Tags: cve-2007-6390 serendipity

Related Items

      CVE-2008-1606 (elastic_path)

      CVE-2007-6606 (OpenBiblio)

      Heap overflow in Sybase MobiLink 10.0.1.3629

      Vuln: Asterisk IAX2 Packet Amplification Remote Denial of Service Vulnerability

      CRYP_MANGLED

      FrSIRT - Fedora Security Update Fixes pam_krb5 Privilege Escalation Issue

      CVE-2008-3255 (webproxy)

 

Pixel