HTMLToNuke - Cross-Site Scripting

EDB-ID:

22896

CVE:

N/A


Author:

JOCANOR

Type:

webapps


Platform:

PHP

Date:

2003-07-13


source: https://www.securityfocus.com/bid/8174/info

A vulnerability has been reported in htmltonuke that may result in web code execution in the browser of visiting users. This code would be executed in the security context of the site hosting the vulnerable script.

http://www.example.com/htmltonuke.php?filnavn=[SCRIPT]%20example.html