Описание
Cross-site scripting (XSS) vulnerability in kshop_search.php in the Kshop module 2.22 for Xoops allows remote attackers to inject arbitrary web script or HTML via the search parameter.
Cross-site scripting (XSS) vulnerability in kshop_search.php in the Kshop module 2.22 for Xoops allows remote attackers to inject arbitrary web script or HTML via the search parameter.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2008-3560
- https://exchange.xforce.ibmcloud.com/vulnerabilities/44261
- http://downloads.securityfocus.com/vulnerabilities/exploits/30576.html
- http://lostmon.blogspot.com/2008/08/kshop-module-search-variable-and-field.html
- http://secunia.com/advisories/31402
- http://www.securityfocus.com/bid/30576
Связанные уязвимости
nvd
больше 17 лет назад
Cross-site scripting (XSS) vulnerability in kshop_search.php in the Kshop module 2.22 for Xoops allows remote attackers to inject arbitrary web script or HTML via the search parameter.