Cross-site scripting (XSS) vulnerability in the tb-send.rb (TrackBack transmission) plugin in tDiary 2.2.2 and earlier allows remote attackers to inject arbitrary web script or HTML via unknown vectors, possibly related to the (1) plugin_tb_url and (2) plugin_tb_excerpt parameters.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2022-10-03T16:21:11
Updated: 2022-10-03T16:21:11
Reserved: 2022-10-03T00:00:00
Link: CVE-2010-0726
JSON object: View
NVD Information
Status : Analyzed
Published: 2010-03-02T19:30:00.290
Modified: 2010-03-03T05:00:00.000
Link: CVE-2010-0726
JSON object: View
Redhat Information
No data.
CWE