CVE-2010-3262
https://notcve.org/view.php?id=CVE-2010-3262
Cross-site scripting (XSS) vulnerability in Flock Browser 3.x before 3.0.0.4114 allows remote attackers to inject arbitrary web script or HTML via a crafted RSS feed. Vulnerabilidad de ejecución de comandos en sitios cruzados en Flock Browser v3.x antes de v3.0.0.4114 permite a atacantes remotos ejecutar HTML o secuencias de comandos web de su elección a través de un feed RSS modificado para tal fin. • http://flock.com/security http://www.securityfocus.com/archive/1/513701/100/0/threaded http://www.securityfocus.com/bid/43225 https://exchange.xforce.ibmcloud.com/vulnerabilities/61820 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •
CVE-2010-3202 – Flock Browser 3.0.0 - Malformed Bookmark HTML Injection
https://notcve.org/view.php?id=CVE-2010-3202
Cross-site scripting (XSS) vulnerability in Flock Browser 3.0.0.3989 allows remote attackers to inject arbitrary web script or HTML via a crafted bookmark. Vulnerabilidad de ejecución de secuencias de comandos en sitios cruzados (XSS) en Flock Browser v3.0.0.3989 permite a atacantes remotos inyectar HTML o scripts web a través de un bookmark modificado para tal fin. • https://www.exploit-db.com/exploits/34500 http://archives.neohapsis.com/archives/bugtraq/2010-09/0111.html http://flock.com/security http://lostmon.blogspot.com/2010/08/flock-browser-3003989-malformed.html http://www.securityfocus.com/bid/42556 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •