PT-2005-3498 · Owasp · Safehtml

Publicado

2005-08-17

·

Atualizado

2008-09-05

·

CVE-2005-2608

CVSS v2.0

4.3

Média

VetorAV:N/AC:M/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions SafeHTML versions prior to 1.3.5
Description The issue allows remote attackers to conduct cross-site scripting (XSS) attacks in vulnerable applications due to improper filtering of script in UTF-7 and CSS comments.
Recommendations For versions prior to 1.3.5, update to version 1.3.5 or later to resolve the issue.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2005-2608

Produtos afetados

Safehtml