Advertisement






Archangel Weblog 0.90.02 and prior Multiple HTML injections

CVE Category Price Severity
N/A CWE-79 Unknown High
Author Risk Exploitation Type Date
Unknown High Remote 2006-08-15
CPE PURL
cpe:cpe:/a:webangelarch:weblog:0.90.02
CVSS EPSS EPSSP
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N 0.09 0

CVSS vector description

Our sensors found this exploit at: http://cxsecurity.com/ascii/WLB-2006080069

Below is a copy:

## HeLiOsZ - Dark End Team - Internet Security Team
## Archangel Weblog 0.90.02 and prior Multiple HTML injections

## IRC: darkend.sytes.net #darkend , http://darkend.sytes.net & 
http://www.darkend.org
## Rish : Medium
## Type : web applet

## Creator: http://www.archangelmgt.com/

## Exploit:
- To exploit this issue you must only put your injection in the Name,or the 
Comment
  section,because that two parts do not sanitize the imput

_________________________________________________________________
Express yourself instantly with MSN Messenger! Download today it's FREE! 
http://messenger.msn.click-url.com/go/onm00200471ave/direct/01/

Copyright ©2024 Exploitalert.

This information is provided for TESTING and LEGAL RESEARCH purposes only.
All trademarks used are properties of their respective owners. By visiting this website you agree to Terms of Use and Privacy Policy and Impressum