Phase:Cross-site scripting (XSS) vulnerability in iframe.php in daverave Link Bank allows remote attackers to inject arbitrary web script or HTML via the site parameter.
ReferencesBUGTRAQ:Monday, March 06, 2006 link bank code execution and xss | URL:http://www.securityfocus.com/archive/1/archive/1/426932/100/0/threaded | BID:17001 | URL:http://www.securityfocus.com/bid/17001 | FRSIRT:ADV-2006-0885 | URL:http://www.frsirt.com/
Votes:Assigned (Tuesday, March 14, 2006)
Comments:None (candidate not yet proposed)
F7: