CVE
- Id
- 9503
- CVE No.
- CVE-2004-1075
- Status
- Candidate
- Description
- Cross-site scripting (XSS) vulnerability in standard_error_message.dtml for Zwiki after 0.10.0rc1 to 0.36.2 allows remote attackers to inject arbitrary HTML and web script via a malformed URL, which is not properly cleansed when generating an error message.
- Phase
- Assigned (20041129)
- Votes
- None (candidate not yet proposed)
- Comments