0
20
Dec

Movable Type Unspecified Cross-Site Scripting Vulnerability

BugTraq ID: 22292
Remote: Yes
Last Updated: 2007-01-29
Relevant URL: http://www.securityfocus.com/bid/22292
Summary:
Movable Type is prone to an unspecified cross-site scripting vulnerability because the application fails to sufficiently sanitize user-supplied data.

Exploiting this issue may help the attacker steal cookie-based authentication credentials and launch other attacks.

Versions prior to 3.34 are affected by this issue.

Leave a Reply