CVE
- Id
- 40691
- CVE No.
- CVE-2009-3256
- Status
- Candidate
- Description
- Cross-site scripting (XSS) vulnerability in include/ajax/blogInfo.php in LiveStreet 0.2 allows remote attackers to inject arbitrary web script or HTML via the URI, as demonstrated by a SCRIPT element in an arbitrary parameter such as the asd parameter.
- Phase
- Assigned (20090918)
- Votes
- None (candidate not yet proposed)
- Comments