RSS   Vulnerabilities for 'Autorank'   RSS

2006-07-06
 
CVE-2006-3377

CWE-Other
 

 
Cross-site scripting (XSS) vulnerability in JMB Software AutoRank PHP 3.02 and earlier, and AutoRank Pro 5.01 and earlier, allows remote attackers to inject arbitrary web script or HTML via the (1) Keyword parameter in search.php and the (2) Username parameter in main.cgi.

 

 >>> Vendor: Jmb software 2 Products
Autogallery
Autorank


Copyright 2024, cxsecurity.com

 

Back to Top