CVE-2001-1199 Information

Description

Cross-site scripting vulnerability in agora.cgi for Agora 3.0a through 4.0g when debug mode is enabled allows remote attackers to execute Javascript on other clients via the cart_id parameter.

Reference

http://www.agoracgi.com/security.html http://www.iss.net/security_center/static/7708.php http://www.osvdb.org/698 http://www.securityfocus.com/archive/1/246044 http://www.securityfocus.com/bid/3702

Share on: