Peel shopping peel-shopping_9_1_0 version contains a Cross Site Scripting (XSS) vulnerability that can result in an authenticated user injecting java script code in the "Site Name EN" parameter. This attack appears to be exploitable if the malicious user has access to the administration account.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2018-12-27T18:00:00Z

Updated: 2024-09-17T02:06:43.562Z

Reserved: 2018-12-27T00:00:00Z

Link: CVE-2018-1000887

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2018-12-28T16:29:01.910

Modified: 2021-02-22T18:45:36.747

Link: CVE-2018-1000887

cve-icon Redhat

No data.