Description
|
|
Multiple Cross Site Scripting vulnerabilities were identified in Iatek PortalApp, which may be exploited by attackers to inject malicious HTML codes. These flaws are due to an input validation error in the "content.asp", "search_content.asp" and "forums.asp" scripts when handling specially crafted "contenttype", "ContentId", "CatId", "ContentTypeId" and "ForumId" parameters, which may be exploited by attackers to cause arbitrary scripting code to be executed by the user's browser.
|