|
VisionSource CMS <= 0.6 XSS vectors=0D
=0D
Discovered by: Nomenumbra=0D
Date: 5/4/2006=0D
impact:moderate (privilege escalation,possible defacement)=0D
=0D
No data inside the user's profile is filtered thus allowing them to=0D
embed malicious XSS vectors to potentially steal cookies.=0D
=0D
Nomenumbra/[0x4F4C]