Learn Search

Search across all Learn content

← Back to Security Research

Andy’s PHP Knowledgebase Multiple Cross-Site Scripting Vulnerabilities

SecPod Research Team member (Sooraj K.S) has found multiple cross-site scripting vulnerabilities in Andy’s PHP Knowledgebase. The vulnerability is caused by improper validation of various parameters in several pages. This may allow an attacker to steal cookie-based authentication credentials or inje...

Jul 7, 2011By Veerendra GG1 min read

SecPod Research Team member (Sooraj K.S) has found multiple cross-site scripting vulnerabilities in Andy’s PHP Knowledgebase. The vulnerability is caused by improper validation of various parameters in several pages. This may allow an attacker to steal cookie-based authentication credentials or inject arbitrary HTML code and launch further attacks.

More information can be found here.

Andy’s PHP Knowledgebase Multiple Cross-Site Scripting Vulnerabilities | SecPod