CVE

Id
35328  
CVE No.
CVE-2008-5211  
Status
Candidate  
Description
Cross-site scripting (XSS) vulnerability in search.php in Sphider 1.3.4, when the search suggestion feature is enabled, allows remote attackers to inject arbitrary web script or HTML via the query parameter, a different vector than CVE-2006-2506.  
Phase
Assigned (20081124)  
Votes
None (candidate not yet proposed)  
Comments