MEDIUM
Multiple cross-site scripting (XSS) vulnerabilities in PhpAuction 2.5 allow remote attackers to inject arbitrary web script or HTML via the lan parameter to (1) index.php or (2) admin/index.php, or (3) the auction_id parameter to profile.php
Published Jul 13, 2005
4.3
MEDIUMCVSS 2.0
EPSS 0.99%
Description
Affected products
Remediation
Metrics
References (2)
Change history (0)
No recorded changes yet.