PT-2018-11721 · Php Scripts Mall · Php Scripts Mall Auditor Website

Publicado

2018-07-09

·

Atualizado

2020-05-06

·

CVE-2018-13256

CVSS v3.1

6.1

Média

VetorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions PHP Scripts Mall Auditor Website version 2.0.1
Description The issue allows for XSS via the lastname or firstname parameter.
Recommendations For PHP Scripts Mall Auditor Website version 2.0.1, update the software to a version that fixes this issue, ensuring that user input for the lastname and firstname parameters is properly sanitized to prevent XSS attacks.

Exploit

Correção

XSS

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2018-13256

Produtos afetados

Php Scripts Mall Auditor Website