View Issue Details

IDProjectCategoryView StatusLast Update
0002060OXID eShop (all versions)4.04. Securitypublic2010-10-20 15:44
Reportersarunas_valaskevicius Assigned To 
PriorityurgentSeveritymajorReproducibilityalways
Status resolvedResolutionfixed 
Fixed in Version4.4.3 revision 30016 
Summary0002060: xss in frontend (internet explorer only)
DescriptionXSS possible for all IE 5, 6, 7, 8 users, due to missing content encoding headers and IE UTF-7 flaw.
TagsNo tags attached.
Theme
BrowserAll
PHP Versionany
Database Versionany

Activities

There are no notes attached to this issue.