0
20
Dec
Movable Type Unspecified Cross-Site Scripting Vulnerability
BugTraq ID: 22292
Remote: Yes
Last Updated: 2007-01-29
Relevant URL: http://www.securityfocus.com/bid/22292
Summary:
Movable Type is prone to an unspecified cross-site scripting vulnerability because the application fails to sufficiently sanitize user-supplied data.
Exploiting this issue may help the attacker steal cookie-based authentication credentials and launch other attacks.
Versions prior to 3.34 are affected by this issue.