Description
|
|
(:A cross-site scripting vulnerability was reported in Dotclear.:A remote attacker could exploit it by enticing their victim into following a specially crafted link in order to execute arbitrary JavaScript or HTML code.::This vulnerability stems from improper user-input sanitization in the "order" and "sortby" parameters located in the "admin/blogs.php" and "admin/users.php" pages.)
|