Описание
Affiliate Pro 1.7 contains multiple reflected cross-site scripting vulnerabilities in the index module's input fields. Attackers can inject malicious scripts through fullname, username, and email parameters to execute client-side attacks and manipulate browser requests.
Affiliate Pro 1.7 contains multiple reflected cross-site scripting vulnerabilities in the index module's input fields. Attackers can inject malicious scripts through fullname, username, and email parameters to execute client-side attacks and manipulate browser requests.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2021-47911
- https://codecanyon.net/item/affiliate-pro-affiliate-management-system/12908496
- https://jdwebdesigner.com
- https://www.vulncheck.com/advisories/affiliate-pro-reflected-cross-site-scripting-via-index-module
- https://www.vulnerability-lab.com/get_content.php?id=2281
Связанные уязвимости
Affiliate Pro 1.7 contains multiple reflected cross-site scripting vulnerabilities in the index module's input fields. Attackers can inject malicious scripts through fullname, username, and email parameters to execute client-side attacks and manipulate browser requests.