PHP Classifieds Cross-Site Scripting Vulnerability
BID:5022
Info
PHP Classifieds Cross-Site Scripting Vulnerability
| Bugtraq ID: | 5022 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 14 2002 12:00AM |
| Updated: | Jun 14 2002 12:00AM |
| Credit: | Discovery of this issue is credited to "[windows-1256] § o m e 1" <[email protected]>. |
| Vulnerable: |
DeltaScripts PHP Classifieds 6.0.5 |
| Not Vulnerable: | |
Discussion
PHP Classifieds Cross-Site Scripting Vulnerability
PHP Classifieds has been reported to be prone to cross-site scripting attacks. Attackers may inject arbitrary HTML or script code into URI parameters in a malicious link. When the malicious link is visited, the attacker's script code will be executed in the web client of the user browsing the link, in the security context of the website hosting the vulnerable software.
PHP Classifieds has been reported to be prone to cross-site scripting attacks. Attackers may inject arbitrary HTML or script code into URI parameters in a malicious link. When the malicious link is visited, the attacker's script code will be executed in the web client of the user browsing the link, in the security context of the website hosting the vulnerable software.
References
PHP Classifieds Cross-Site Scripting Vulnerability
References:
References: