|
Brought to you by:
Suppliers of:
|
|
|
| |
| UseModWiki is "a famous wiki web applications". UseModWiki has been found to contain a cross-site scripting vulnerability. |
| |
Credit:
The information has been provided by SSR Team.
|
| |
Due to an input validation flaw in its parsing of user provided information, UseModWiki is vulnerable to cross-site scripting attacks.
Example:
http://[victim]/cgi-bin/wiki.pl?< script>alert('XSSvulnerabilityexists')</script>
Disclosure Timeline:
2004-10-01 Vulnerability found
2004-10-01 UseModWiki developer notified
2004-10-02 UseModWiki developer confirmed
2004-12-09 Official release
|
|
|
|
|