oss-sec mailing list archives

Re: cve request: punbb < 1.2.20 xss


From: "Steven M. Christey" <coley () linus mitre org>
Date: Tue, 9 Sep 2008 10:38:28 -0400 (EDT)


On Tue, 9 Sep 2008, Hanno [utf-8] B??ck wrote:

http://punbb.informer.com/

cite:
"The XSS via the "p" GET parameter is fixed. Reported by Henry Sudhof."

Use CVE-2008-3968

- Steve


Current thread: