Movable Type SQL Injection and Cross Site Scripting Vulnerabilities
Description
Multiple vulnerabilities have been identified in Movable Type, which could be exploited by attackers to gain knowledge of sensitive information or inject SQL queries. These issues are caused by input validation errors related to "mt:AssetProperty" and "mt:EntryFlag" tags and to dynamic publishing error messages, which could be exploited to conduct SQL injection or cross site scripting attacks.
Vulnerable Products
Vulnerable Software: Movable Type Open Source versions 4.xMovable Type Open Source versions 5.xMovable Type versions 4.x (with Professional Pack, Community Pack)Movable Type versions 5.x (with Professional Pack, Community Pack)Movable Type Enterprise versions 4.x