Beveiligingsadvies

CVE-2007-6390

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2007-12-17 18:00:00
Laatst bijgewerkt 2024-08-07 16:02:36
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

Cross-site request forgery (CSRF) vulnerability in the mycalendar plugin before 0.13 for Serendipity allows remote attackers to perform actions as blog administrators, which can be leveraged to conduct cross-site scripting (XSS) attacks on the blog page.