These modules don't properly sanitize some of their output, allowing certain users the ability to insert arbitrary HTML and script code. Such a Cross-Site Scripting (XSS) attack may lead to a malicious user gaining full administrative access.
Diese Module überprüfen nicht alle übergebenen Parameter ausreichend genau, so dass Angreifer HTML- und Script-Code injizieren können, was einen Cross-Site Scripting Angriff (XSS) ermöglicht. Folge ist ggf. auch administrativer Zugang zu einem anfälligen System.
Possibilitiers would be html-codes, scripts, php-codes, but also external pages.
FrontPage components generate HTML, or, in some cases, client-side or server-side script code.
FrontPage-Komponenten generieren HTML-Code und in einigen Fällen client- oder serverseitigen Skriptcode.
Potentially sensitive or inappropriate content
Examples are used only to help you translate the word or expression searched in various contexts. They are not selected or validated by us and can contain inappropriate terms or ideas. Please report examples to be edited or not to be displayed. Potentially sensitive, inappropriate or colloquial translations are usually marked in red or in orange.