RSS   Vulnerabilities for 'Open classifieds'   RSS

2010-09-16
 
CVE-2010-3427

CWE-79
 

 
Multiple cross-site scripting (XSS) vulnerabilities in Open Classifieds 1.7.0.2 allow remote attackers to inject arbitrary web script or HTML via the (1) desc, (2) price, (3) title, and (4) place parameters to index.php and the (5) subject parameter to contact.htm, related to content/contact.php.

 


Copyright 2024, cxsecurity.com

 

Back to Top