CVE

Id
37134  
CVE No.
CVE-2008-7017  
Status
Candidate  
Description
Cross-site scripting (XSS) vulnerability in analyse.php in CAcert 20080921, and possibly other versions before 20080928, allows remote attackers to inject arbitrary web script or HTML via the CN (CommonName) field in the subject of an X.509 certificate.  
Phase
Assigned (20090821)  
Votes
None (candidate not yet proposed)  
Comments