| HIO-2009-0519 ACollab 1.2 Multiple Vulnerabilities |
|
|
|
|
ACollab 1.2 contains multiple flaws that allow remote script insertion, cross site request forgery, and cross site scripting. 1) XSS: Input passed to the "f" parameter in sign_in.php is not properly sanitised before being returned to the user. References: CVE-2009-pending BID: FrSIRT: N/A Nessus:N/A OSVDB: 54798 , 54799 , 54800 . 54801 SA: 35173 XF: Related: Vendor Solution: |
| < Prev | Next > |
|---|







