Cross-site scripting (XSS) vulnerability in LXR Cross Referencer before 0.9.7 allows remote attackers to inject arbitrary web script or HTML via vectors related to the search body and the results page for a search, a different vulnerability than CVE-2009-4497 and CVE-2010-1448.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2010-06-24 12:30
Updated : 2024-02-04 17:54
NVD link : CVE-2010-1625
Mitre link : CVE-2010-1625
CVE.ORG link : CVE-2010-1625
JSON object : View
Products Affected
malcom_box
- lxr_cross_referencer
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')