MHonArc m2h_text_html Filter Cross Site Scripting Vulnerability
BID:6479
Info
MHonArc m2h_text_html Filter Cross Site Scripting Vulnerability
| Bugtraq ID: | 6479 |
| Class: | Input Validation Error |
| CVE: |
CVE-2002-1388 |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 21 2002 12:00AM |
| Updated: | Jul 11 2009 07:17PM |
| Credit: | This vulnerability was discovered by the MHonArc team. |
| Vulnerable: |
MHonArc MHonArc 2.5.13 MHonArc MHonArc 2.5.12 MHonArc MHonArc 2.5.11 MHonArc MHonArc 2.5.3 MHonArc MHonArc 2.5.2 MHonArc MHonArc 2.5.1 MHonArc MHonArc 2.5 MHonArc MHonArc 2.4.4 |
| Not Vulnerable: |
MHonArc MHonArc 2.5.14 |
Discussion
MHonArc m2h_text_html Filter Cross Site Scripting Vulnerability
A cross site scripting vulnerability has been reported for MHonArc.
A specially crafted HTML mail messages may be able to bypass existing HTML filtering techniques imposed by MHonArc. Any MHonArc archives that allow HTML content are vulnerable to this issue.
This vulnerability has been reported to affect all versions of MHonArc 2.5.13 and earlier.
A cross site scripting vulnerability has been reported for MHonArc.
A specially crafted HTML mail messages may be able to bypass existing HTML filtering techniques imposed by MHonArc. Any MHonArc archives that allow HTML content are vulnerable to this issue.
This vulnerability has been reported to affect all versions of MHonArc 2.5.13 and earlier.