Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

OpenNewsletter "type" Cross-Site Scripting

BugsAlert Home > OpenNewsletter "type" Cross-Site Scripting
 
 

Manuel Fernandez has discovered a vulnerability in OpenNewsletter, which can be exploited by malicious people to conduct cross-site scripting attacks.


Be sure to check if your system is missing security updates or have insecure applications installed:
http://secunia.com/software_inspector/

Feature Overview - The Secunia Software Inspector:
* Detects insecure versions of applications installed
* Verifies that all Microsoft patches are applied
* Assists you in updating your system and applications
* Runs through your browser. No installation or download is required.




Original Source: http://secunia.com/advisories/27966/

Learn more about OpenNewsletter "type" Cross-Site Scripting
 
Tags: opennewsletter type cross-site scripting

Related Items

      Libexif EXIF Tag Handling Integer Overflow and Denial of Service Issues

      WORM_ONLINEG.ED

      FrSIRT - Meeting Room Booking System "area" SQL Injection Vulnerabilities

      CVE-2008-0639 (Novell client)

      FrSIRT - Pidgin "msn_slplink_process_msg" Integer Overflow Vulnerabilities

      CVE-2008-5734 (merak_mail_server)

      ITechBids 7.0 Gold (XSS/SQL) Multiple Remote Vulnerabilities

 

Pixel