CVE-2006-3001 Information

Description

Cross-site scripting (XSS) vulnerability in search.php in OkScripts OkMall 1.0 allow remote attackers to inject arbitrary web script or HTML via the page parameter. NOTE: this might be resultant from another vulnerability since the XSS is reflected in an error message.

Reference

http://secunia.com/advisories/20621 http://securityreason.com/securityalert/1080 http://www.securityfocus.com/archive/1/436561 http://www.vupen.com/english/advisories/2006/2282 https://exchange.xforce.ibmcloud.com/vulnerabilities/27131

Share on: