CVE-2012-2910
21.05.2012, 18:55
Multiple cross-site scripting (XSS) vulnerabilities in SiliSoftware phpThumb() 1.7.11 allow remote attackers to inject arbitrary web script or HTML via the (1) dir parameter to demo/phpThumb.demo.random.php or (2) title parameter to demo/phpThumb.demo.showpic.php.
Vendor | Product | Version |
---|---|---|
silisoftware | phpthumb\(\) | 1.7.11 |
𝑥
= Vulnerable software versions
References