[Forgot Password]
Login  Register Subscribe

30481

 
 

423868

 
 

256148

 
 

909

 
 

199106

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-1528 serendipity -- insufficient input sanitising

ID: oval:org.mitre.oval:def:7712Date: (C)2009-12-15   (M)2021-06-02
Class: PATCHFamily: unix




Peter Huumlwe and Hanno Bouml ck discovered that Serendipity, a weblog manager, did not properly sanitise input to several scripts which allowed cross site scripting. The old stable distribution (sarge) does not contain a serendipity package.

Platform:
Debian 4.0
Product:
serendipity
Reference:
DSA-1528
CVE-2007-6205
CVE-2008-0124
CVE-2008-1476
CVE    3
CVE-2007-6205
CVE-2008-0124
CVE-2008-1476
CPE    1
cpe:/o:debian:debian_linux:4.0

© SecPod Technologies