Cross-site scripting (XSS) vulnerability in Open Solution Quick.Cms 5.0 and Quick.Cart 6.0, possibly as downloaded before December 19, 2012, allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to admin.php. NOTE: this might be a duplicate of CVE-2008-4140.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2014-03-24T14:00:00
Updated: 2024-08-06T21:28:39.936Z
Reserved: 2012-12-19T00:00:00
Link: CVE-2012-6430
Vulnrichment
No data.
NVD
Status : Modified
Published: 2014-03-24T16:43:01.910
Modified: 2017-08-29T01:32:56.323
Link: CVE-2012-6430
Redhat
No data.