diff --git a/security/vuxml/vuln.xml b/security/vuxml/vuln.xml index 065ba2dc7c1e..4a49e46fad9d 100644 --- a/security/vuxml/vuln.xml +++ b/security/vuxml/vuln.xml @@ -34,6 +34,40 @@ Note: Please add new entries to the beginning of this file. --> + + MT -- Search Unspecified XSS + + + MT + 3.33.33 + + + + +

Secunia reports:

+
+

Arai has reported a vulnerability in Movable Type and + Movable Type Enterprise, which can be exploited by + malicious people to conduct cross-site scripting attacks.

+

Some unspecified input passed via the search functionality + isn't properly sanitised before being returned to the user. + This can be exploited to execute arbitrary HTML and script + code in a user's browser session in context of an affected + site.

+
+ +
+ + CVE-2006-5080 + http://secunia.com/advisories/22109 + http://www.sixapart.com/movabletype/news/2006/09/mt_333-mte_103_updates.html + + + 2006-09-26 + 2006-10-02 + +
+ phpmyadmin -- XSRF vulnerabilities