Streber Unspecified HTML Injection Vulnerability
BID:17157
Info
Streber Unspecified HTML Injection Vulnerability
| Bugtraq ID: | 17157 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 20 2006 12:00AM |
| Updated: | Mar 20 2006 10:54PM |
| Credit: | Reported by the vendor. |
| Vulnerable: |
Streber Streber 0.054 |
| Not Vulnerable: |
Streber Streber 0.056 Streber Streber 0.055 |
Discussion
Streber Unspecified HTML Injection Vulnerability
Streber is affected by an unspecified HTML-injection vulnerability. A victim user who views the vulnerable sections of the site would have the attacker-supplied HTML and script code executed in the security context of the affected site.
Streber 0.054 and prior are vulnerable.
Streber is affected by an unspecified HTML-injection vulnerability. A victim user who views the vulnerable sections of the site would have the attacker-supplied HTML and script code executed in the security context of the affected site.
Streber 0.054 and prior are vulnerable.
Exploit / POC
Streber Unspecified HTML Injection Vulnerability
This issue can be exploited with a web browser.
This issue can be exploited with a web browser.
Solution / Fix
Streber Unspecified HTML Injection Vulnerability
Solution:
Version 0.055 and subsequent releases are not vulnerable to this issue.
Streber Streber 0.054
Solution:
Version 0.055 and subsequent releases are not vulnerable to this issue.
Streber Streber 0.054
-
Streber streber_v0.056.zip
http://prdownloads.sourceforge.net/streber/streber_v0.056.zip?download