Multiple cross-site scripting (XSS) vulnerabilities in TUTOS 1.1 allow remote attackers to inject arbitrary web script or HTML via (1) the search field of the Address Module or (2) the t parameter to app_new.php.
| Software | From | Fixed in |
|---|---|---|
| tutos / tutos | 1.1_2004-04-14 | 1.1_2004-04-14.x |