RSS   Vulnerabilities for 'Eprayer'   RSS

2006-07-12
 
CVE-2006-3538

CWE-Other
 

 
Multiple cross-site scripting (XSS) vulnerabilities in demo.php in BeatificFaith Eprayer Alpha allow remote attackers to inject arbitrary web script or HTML via the SRC attribute of a SCRIPT element in the (1) "Your name" field and (2) "Enter Prayer Request here" field.

 


Copyright 2024, cxsecurity.com

 

Back to Top