CVE-2014-8954
17.11.2014, 16:59
Multiple cross-site scripting (XSS) vulnerabilities in phpSound 1.0.5 allow remote attackers to inject arbitrary web script or HTML via the (1) Title or (2) Description fields in a playlist or the (3) filter parameter in an explore action to index.php.
Vendor | Product | Version |
---|---|---|
codecanyon | phpsound | 1.0.5 |
𝑥
= Vulnerable software versions
References