Multiple cross-site scripting (XSS) vulnerabilities in weblog.pl in PerlBlog 1.09b and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) name and (2) email parameters.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Perlblog | Perlblog | 1.08 (including) | 1.08 (including) |
Perlblog | Perlblog | 1.09 (including) | 1.09 (including) |
Perlblog | Perlblog | 1.09b (including) | 1.09b (including) |