CVE-2009-3195
15.09.2009, 21:30
Multiple cross-site scripting (XSS) vulnerabilities in JCE-Tech Auction RSS Content Script 3.0 allow remote attackers to inject arbitrary web script or HTML via the id parameter to (1) rss.php and (2) search.php.
Vendor | Product | Version |
---|---|---|
jce-tech | auction_rss_content_script | 3.0 |
𝑥
= Vulnerable software versions
References