#210 - multiple xss vulns

Description

Are there any input validations?

There are XSS vulns all over the site. At least while viewing a ticket <title>XXX</title>, and the eMail input field in UserCP are not checked at all.

I stopped testing here because of acute disbelieve. I hope I got something very wrong..

Activity

Jack closed as Closed 14 years and 3 months ago

13 years and 10 months ago by Jack

  • Milestone 3.0 2.3.2

Status

Closed
Jack
Highest

Details

Defect
2.3.2
-
2.2
Blocker

Tracking

stetus
14 years and 8 months ago
11 years and 10 months ago
0
-
-