CVE-2010-2509 Information

Description

Multiple cross-site scripting (XSS) vulnerabilities in 2daybiz Web Template Software allow remote attackers to inject arbitrary web script or HTML via the (1) keyword parameter to category.php and the (2) password parameter to memberlogin.php.

Reference

http://secunia.com/advisories/40348 http://www.exploit-db.com/exploits/14020

Share on: