Cross-site scripting vulnerability (XSS) in Nuked-Klan 1.3 beta and previous versions allows remote malicious users to steal authentication information via cookies by injecting arbitrary HTML or script into op of the (1) Team, (2) News, and (3) Liens modules.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
nuked-klan nuked-klan 1.2 |
||
nuked-klan nuked-klan 1.3 |
||
nuked-klan nuked-klan 1.3_beta |
||
nuked-klan nuked-klan 1.2_beta |