CVE-2010-1091 Information

Description

Multiple cross-site scripting (XSS) vulnerabilities in contact.php in phpMySite allow remote attackers to inject arbitrary web script or HTML via the (1) name (2) city (3) email (4) state and (5) message parameters.

Reference

http://packetstormsecurity.org/1002-exploits/phpmysite-sqlxss.txt http://www.exploit-db.com/exploits/11588 http://www.vupen.com/english/advisories/2010/0492 https://exchange.xforce.ibmcloud.com/vulnerabilities/56574

Share on: