Simple Invoices Multiple HTML Injection and Cross Site Scripting Vulnerabilities
BID:56882
Info
Simple Invoices Multiple HTML Injection and Cross Site Scripting Vulnerabilities
| Bugtraq ID: | 56882 |
| Class: | Input Validation Error |
| CVE: |
CVE-2012-4932 |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 10 2012 12:00AM |
| Updated: | Dec 10 2012 12:00AM |
| Credit: | tommccredie |
| Vulnerable: |
Simple Invoices Simple Invoices 2011.1 |
| Not Vulnerable: | |
Solution / Fix
Simple Invoices Multiple HTML Injection and Cross Site Scripting Vulnerabilities
Solution:
Reportedly, the issues have been fixed, however, Symantec has not confirmed it. Please contact the vendor for more information.
Solution:
Reportedly, the issues have been fixed, however, Symantec has not confirmed it. Please contact the vendor for more information.
References
Simple Invoices Multiple HTML Injection and Cross Site Scripting Vulnerabilities
References:
References:
- Simple Invoices git commit (Simple Invoices)
- Simple Invoices Homepage (Simple Invoices)
- SimpleInvoices 2011.1 Cross-Site-Scripting (XSS) Vulnerabilities CVE-2012-4932 (tommccredie)