Cryptocat before 2.0.22 has Remote Script Injection due to improperly sanitizing user input
References
Link | Resource |
---|---|
http://packetstormsecurity.com/files/134252/Cryptocat-Script-Insertion.html | Third Party Advisory VDB Entry |
https://www.openwall.com/lists/oss-security/2013/07/10/15 | Mailing List Third Party Advisory |
https://tobtu.com/decryptocat.php | Product |
https://packetstormsecurity.com/files/cve/CVE-2013-4103 | Third Party Advisory VDB Entry |
https://www.securityfocus.com/bid/61093 | Third Party Advisory VDB Entry |
Configurations
Information
Published : 2019-11-04 07:15
Updated : 2019-11-06 10:56
NVD link : CVE-2013-4103
Mitre link : CVE-2013-4103
JSON object : View
CWE
CWE-20
Improper Input Validation
Products Affected
cryptocat_project
- cryptocat