Cross-site scripting (XSS) vulnerability in phpRank 1.8 allows remote attackers to inject arbitrary web script or HTML via the (1) the email parameter of add.php or (2) the banner URL (banurl parameter) in the main list.
References
Configurations
History
20 Nov 2024, 23:42
Type | Values Removed | Values Added |
---|---|---|
References | () http://archives.neohapsis.com/archives/bugtraq/2002-10/0148.html - Exploit | |
References | () http://www.iss.net/security_center/static/10351.php - | |
References | () http://www.securityfocus.com/bid/5946 - |
Information
Published : 2002-12-31 05:00
Updated : 2024-11-20 23:42
NVD link : CVE-2002-1950
Mitre link : CVE-2002-1950
CVE.ORG link : CVE-2002-1950
JSON object : View
Products Affected
phprank
- phprank
CWE