Re: [Full-disclosure] Multiple Cross Site Scripting (XSS) and SQL injection Vulnerabilities in XRMS, CVE-2008-3664

2008-09-04 Thread Juha-Matti Laurio
The CVE identifier '3664' was not updated to your CVE Information section yet :) Juha-Matti Fabian Fingerle [EMAIL PROTECTED] wrote: > >Multiple Cross Site Scripting (XSS) and SQL injection Vulnerabilities in XRMS, >CVE-2008-3664 > --clip-- >CVE Information > >The Common Vulnerabilities and Exp

[Full-disclosure] Multiple Cross Site Scripting (XSS) and SQL injection Vulnerabilities in XRMS, CVE-2008-3664

2008-09-03 Thread Fabian Fingerle
Multiple Cross Site Scripting (XSS) and SQL injection Vulnerabilities in XRMS, CVE-2008-3664 References http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3664 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-3664 http://xrms.sourceforge.net Description XRMS is a web-based application for mana