Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

Xoops PopnupBlog Module "index.php" Cross-Site Scripting

BugsAlert Home > Xoops PopnupBlog Module "index.php" Cross-Site Scripting
 
 

Lostmon has discovered two vulnerabilities in the PopnupBlog module for Xoops, which can be exploited by malicious people to conduct cross-site scripting attacks.


Be sure to check if your system is missing security updates or have insecure applications installed:
http://secunia.com/software_inspector/

Feature Overview - The Secunia Software Inspector:
* Detects insecure versions of applications installed
* Verifies that all Microsoft patches are applied
* Assists you in updating your system and applications
* Runs through your browser. No installation or download is required.




Original Source: http://secunia.com/advisories/31625/

Learn more about Xoops PopnupBlog Module "index.php" Cross-Site Scripting
 
Tags: xoops popnupblog module index.php cross-site scripting

Related Items

      Fedora Security Update Fixes Xen Insecure Temporary File Vulnerability

      FrSIRT - Sun Java System Directory Server "bind-dn" Security Bypass Vulnerability

      CVE-2008-5729 (netcat)

      W1L3D4 Philboard Multiple SQL Injection Vulnerabilities

      matthew zeier (mrz): My face is cold

      CVE-2008-0834 (Lotus Quickr)

      CVE-2008-4402 (officescan)

 

Pixel