PHP Scripts Mall Online Lottery PHP Readymade Script 1.7.0 has Reflected Cross-site Scripting (XSS) via the err value in a .ico picture upload.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 04:51
Type | Values Removed | Values Added |
---|---|---|
References | () https://hackingvila.wordpress.com/2019/03/06/php-scripts-mall-online-lottery-php-readymade-script-1-7-0-has-reflected-cross-site-scripting-xss-via-the-err-value-in-a-ico-picture-uploadcve-2019-9605/ - Exploit, Third Party Advisory |
Information
Published : 2019-03-29 14:29
Updated : 2024-11-21 04:51
NVD link : CVE-2019-9605
Mitre link : CVE-2019-9605
CVE.ORG link : CVE-2019-9605
JSON object : View
Products Affected
online_lottery_php_readymade_script_project
- online_lottery_php_readymade_script
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')