MEDIUM
Multiple cross-site scripting (XSS) vulnerabilities in onlinetools.org EasyImageCatalogue 1.3.1 allow remote attackers to inject arbitrary web script or HTML via the (1) search and (2) d index.php parameters to index.php, (3) dir parameter to thumber.php, and the d parameter to (4) describe.php and (5) addcomment.php
Published Sep 1, 2009
4.3
MEDIUMCVSS 2.0
EPSS 1.46%
Description
Affected products
Remediation
Metrics
References (3)
Change history (0)
No recorded changes yet.