OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
[Full-Disclosure] Cross-site Scripting Vulnerability in Atrise EveryFind

From: Sintelli (sintraqsintelli.com)
Date: Wed Oct 01 2003 - 12:43:40 CDT


Ezhilan of Sintelli has identified a Cross-Site Scripting Vulnerability
in Atrise EveryFind 5.0.2.

Details of the vulnerability are provided here:
http://www.sintelli.com/adv/sa-2003-01-everyfind.pdf

Users are advised to upgrade to EveryFind 5.0.3
http://www.atrise.com/everyfind/version.html

Regards
Sintelli
www.sintelli.com

Week 39, 2003 Security Vulnerabilities
http://www.sintelli.com/sinweek/week39-2003.pdf

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html