Multiple cross-site scripting (XSS) vulnerabilities in EQdkp 1.3.2c and earlier allow remote attackers to inject arbitrary web script or HTML via the show parameter to (1) listmembers.php and (2) stats.php. NOTE: some of these details are obtained from third party information.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2007-05-16 12:28
Updated : 2017-07-28 18:31
NVD link : CVE-2007-2716
Mitre link : CVE-2007-2716
JSON object : View
CWE
Products Affected
eqdkp
- eqdkp