Cross-site scripting (XSS) vulnerability in index.cgi in Ultimate eShop 1.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the subid parameter.
References
Configurations
Information
Published : 2006-06-22 15:06
Updated : 2017-07-19 18:32
NVD link : CVE-2006-3156
Mitre link : CVE-2006-3156
JSON object : View
CWE
Products Affected
thinkfactory
- ultimate_eshop