JacoBuddy Chat Module HTML Injection Vulnerability
BID:7061
Info
JacoBuddy Chat Module HTML Injection Vulnerability
| Bugtraq ID: | 7061 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 01 2003 12:00AM |
| Updated: | Mar 01 2003 12:00AM |
| Credit: | Discovery credited to Computer Cops. |
| Vulnerable: |
JacoBuddy JacoBuddy 3.0 b |
| Not Vulnerable: | |
Discussion
JacoBuddy Chat Module HTML Injection Vulnerability
It has been reported that JacoBuddy does not sufficiently filter user input. Because of this, it may be possible for one user to execute script or HTML code in the browser of another user.
It has been reported that JacoBuddy does not sufficiently filter user input. Because of this, it may be possible for one user to execute script or HTML code in the browser of another user.
Exploit / POC
JacoBuddy Chat Module HTML Injection Vulnerability
No exploit is required for this vulnerability.
No exploit is required for this vulnerability.
Solution / Fix
JacoBuddy Chat Module HTML Injection Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
JacoBuddy Chat Module HTML Injection Vulnerability
References:
References: