oss-sec mailing list archives

Re: [CVE Request] Event Easy Calendar


From: Kurt Seifried <kseifried () redhat com>
Date: Mon, 09 Sep 2013 09:36:47 -0600

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On 09/09/2013 02:15 AM, Adéla Goldová wrote:
Hello

The wordpress plugin Event Easy Calendar suffers from CSRF and XSS
vulnerability and improper input validation. Could someone please
assign CVE's to this?

1: http://seclists.org/fulldisclosure/2013/Sep/41


Please include links to the vulns/source code fixes/original
information thanks.

- -- 
Kurt Seifried Red Hat Security Response Team (SRT)
PGP: 0x5E267993 A90B F995 7350 148F 66BF 7554 160D 4553 5E26 7993
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.14 (GNU/Linux)

iQIcBAEBAgAGBQJSLesOAAoJEBYNRVNeJnmTo78QAMSYgdcz1nGX01klyr3heuHd
gTiTeVUl6EtiLH+0VF13pDZJM4UI8kRxEOmKwGfv6qz5zIfxQmfaMk5+IUtdW4sA
jLpjbUuIieuFOCwUGNle04K9faqeq/44BkqaEv024KBtiHRvE1UqFpv0FGzMmr/T
LRVgBPL2AikF0EgZADPualhv+mwzvSEbE87f2OoUj8Oa55mhzLiE+umQv+cs/4mQ
4RmOnX8oBSS6HOwy5y/BKr6wplKDLAleDpOjEvK/GdkpxHJOShJkV21buWg1zKfF
X3qOysIY1QS9DcAQDSlY0sYGMT1G0M22NkSxtOF8NG7Y4R2Uc56eNS3z0grU1RmZ
XRj6MCULBxWzgbFymKRyfswDIQcPjK7pEdkitKBLbZeZSuu0WqQC+lHcjLnHOpkq
YVRoO7BIrHacgMMgQRhGB1Eqasf1fG9mGGxMrL/zeE/JJvIPqNAkrEq+ageoHW8L
5Eph56Ipy/uIWkrKWfrlD2YE3cWGAjUBlC5qh6fjD0T84LSpte3pc8Ib/7+P3ODA
bkxCY4XpS9M4PhZYOV/k7HBTM7p9wQWme1eMn1ld8q+YImf8Em9jYFWVFvDVGZrj
74PZrPzuh2gOrp0Sb754SsgZ4ZuXPTE8HCIVGgT0io2K+OcYnvm9NLtUSm8Vc0qS
x0R4dJZ0BzBkmr4HNxju
=IXdn
-----END PGP SIGNATURE-----


Current thread: