  • 3.5万 阅读
  • 日期:2004-10-22
  • 类别:
  • 作者:anonymous
  • 语法:"Powered by YaPig V0.92b"
  • YaPiG is reported to contain an HTML injection vulnerability. The problem is reported to present itself due to a lack of sanitization performed on certain field data.This may allow an attacker to inject malicious HTML and script code into the application.http://www.securityfocus.com/bid/11452