Cross-site scripting (XSS) vulnerability in HotWebScripts.com Weblog Oggi 1.0 allows remote attackers to inject arbitrary web script or HTML via a comment, possibly involving a javascript URI in the SRC attribute of an IMG element.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Weblog_oggi | Hotwebscripts | 1.0 (including) | 1.0 (including) |