CVE-2009-0404
CVE-2009-0404
Multiple cross-site scripting (XSS) vulnerabilities in Bioinformatics htmLawed 1.1.3 and 1.1.4 allow remote attackers to inject arbitrary web script or HTML via invalid Cascading Style Sheets (CSS) expressions in the style attribute, which is processed by Internet Explorer 7.
Affected products
n/a · n/aWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
http://freshmeat.net/projects/htmlawed/?branch_id=74760&release_id=293026http://freshmeat.net/projects/htmlawed/?branch_id=74760&release_id=293090http://osvdb.org/51650http://secunia.com/advisories/33655https://exchange.xforce.ibmcloud.com/vulnerabilities/48333http://www.bioinformatics.org/phplabware/forum/viewtopic.php?id=85http://www.bioinformatics.org/phplabware/internal_utilities/htmLawed/htmLawed_README.htm#s4.3http://www.securityfocus.com/bid/33507