vendor:
ACS Blog
by:
SecurityFocus
4.3
CVSS
MEDIUM
HTML Injection
79
CWE
Product Name: ACS Blog
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: N/A
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2005
ACS Blog HTML Injection Vulnerability
ACS Blog is affected by an HTML injection vulnerability. The issue affects the 'Name' field and may be exploited to execute arbitrary HTML and script code in the browser of the user when the user views an affected Web page.
Mitigation:
Input validation should be used to ensure that user-supplied data is properly sanitized.