CVE-2011-5040

Multiple cross-site scripting (XSS) vulnerabilities in Infoproject Biznis Heroj allow remote attackers to inject arbitrary web script or HTML via the config parameter to (1) nalozi_naslov.php and (2) widget.dokumenti_lista.php.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:infoproject:biznis_heroj:*:*:*:*:*:*:*:*

Information

Published : 2011-12-30 11:55

Updated : 2017-08-28 18:30


NVD link : CVE-2011-5040

Mitre link : CVE-2011-5040


JSON object : View

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Advertisement

dedicated server usa

Products Affected

infoproject

  • biznis_heroj