Cross-site scripting (XSS) vulnerability in Clever Copy 2.0 and 2.0a allows remote attackers to inject arbitrary web script or HTML via the yr parameter to calendar.php.
References
Link | Resource |
---|---|
http://lostmon.blogspot.com/2005/07/clever-copy-calendarphp-yr-variable.html | Exploit Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2005-07-18 21:00
Updated : 2008-09-05 13:51
NVD link : CVE-2005-2326
Mitre link : CVE-2005-2326
JSON object : View
CWE
Products Affected
clever_copy
- clever_copy