Description
|
|
(:Several cross-site scripting vulnerabilities were reported in Dotclear.:A remote attacker could exploit it by enticing their victim into following a specially crafted link in order to execute arbitrary JavaScript or HTML code.::These vulnerabilities stems from a lack of validation upon user-supplied input in the Web UI.::An exploitation code is available.)
|