MEDIUM
Cross-site scripting (XSS) vulnerability in pdestore.cgi in Dick Copits PDEstore 1.8 and earlier allows remote attackers to inject arbitrary web script or HTML via (1) the search module parameter or the (2) product and (3) cart_id parameters
Published Dec 16, 2005
4.3
MEDIUMCVSS 2.0
EPSS 1.75%
Description
Affected products
Remediation
Metrics
References (5)
Change history (0)
No recorded changes yet.