RSS   Vulnerabilities for 'Classifieds script'   RSS

2009-02-27
 
CVE-2008-6325

 

 
Multiple cross-site scripting (XSS) vulnerabilities in Softbiz Classifieds Script allow remote attackers to inject arbitrary web script or HTML via the (1) radio parameter to showcategory.php, (2) msg parameter to advertisers/signinform.php, (3) radio parameter to gallery.php, (4) msg parameter to lostpassword.php, (5) radio parameter to showcategory.php, (6) msg parameter to admin/adminhome.php, and (7) msg parameter to admin/index.php. NOTE: a different signinform.php file is already covered by CVE-2008-6306.

 
2009-02-26
 
CVE-2008-6306

 

 
Cross-site scripting (XSS) vulnerability in signinform.php in Softbiz Classifieds Script allows remote attackers to inject arbitrary web script or HTML via the msg parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

 

 >>> Vendor: Softbizscripts 10 Products
Classifieds plus script
Softbiz jobs and recruitment script
Link directory script
Banner exchange network script
Ad management plus script
Softbiz auctions script
Softbiz jokes and funny pics script
Classifieds script
Banner ad management script
Article directory script


Copyright 2024, cxsecurity.com

 

Back to Top