Description
Peel shopping peel-shopping_9_1_0 version contains a Cross Site Scripting (XSS) vulnerability that can result in an authenticated user injecting java script code in the "Site Name EN" parameter. This attack appears to be exploitable if the malicious user has access to the administration account.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-2063 | Peel shopping peel-shopping_9_1_0 version contains a Cross Site Scripting (XSS) vulnerability that can result in an authenticated user injecting java script code in the "Site Name EN" parameter. This attack appears to be exploitable if the malicious user has access to the administration account. |
References
| Link | Providers |
|---|---|
| https://github.com/advisto/peel-shopping/issues/1 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-09-17T02:06:43.562Z
Reserved: 2018-12-27T00:00:00.000Z
Link: CVE-2018-1000887
No data.
Status : Modified
Published: 2018-12-28T16:29:01.910
Modified: 2024-11-21T03:40:35.517
Link: CVE-2018-1000887
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD