MEDIUM
Multiple cross-site scripting (XSS) vulnerabilities in MyWeight 1.0 allow remote attackers to inject arbitrary web script or HTML via the (1) date parameter to user_addfood.php, info parameter to (2) user_forgot_pwd_form.php and (3) user_login.php, and (4) return parameter to user_login.php
Published Oct 1, 2009
4.3
MEDIUMCVSS 2.0
EPSS 1.77%
Description
Affected products
Remediation
References (6)
Change history (0)
No recorded changes yet.