Multiple cross-site scripting (XSS) vulnerabilities in WebAsyst Shop-Script FREE allow remote attackers to inject arbitrary web script or HTML via the (1) currency_id_left, (2) currency_id_right, (3) darkcolor, (4) lightcolor, (5) middlecolor, and (6) w parameters.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2010-04-16T19:00:00
Updated: 2024-08-07T01:28:40.694Z
Reserved: 2010-04-16T00:00:00
Link: CVE-2010-1464
Vulnrichment
No data.
NVD
Status : Modified
Published: 2010-04-16T19:30:00.647
Modified: 2024-11-21T01:14:28.870
Link: CVE-2010-1464
Redhat
No data.