CVE-2005-3908

Cross-site scripting (XSS) vulnerability in search.php in GhostScripter Amazon Shop 5.0.0, and other versions before 5.0.2, allows remote attackers to inject web script or HTML via the query parameter.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:amazon_shop:amazon_shop:*:*:*:*:*:*:*:*
cpe:2.3:a:amazon_shop:amazon_shop:*:*:*:*:*:*:*:*

Information

Published : 2005-11-30 03:03

Updated : 2011-03-07 18:27


NVD link : CVE-2005-3908

Mitre link : CVE-2005-3908


JSON object : View

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Advertisement

dedicated server usa

Products Affected

amazon_shop

  • amazon_shop