Multiple cross-site scripting (XSS) vulnerabilities in AlstraSoft EPay Pro 2.0 allow remote attackers to inject arbitrary web script or HTML via the (1) payment or (2) send parameter.
Link | Tags |
---|---|
http://secunia.com/advisories/14802 | third party advisory vendor advisory |
http://marc.info/?l=bugtraq&m=111247198021626&w=2 | mailing list |
http://www.securityfocus.com/bid/12974 | vdb entry exploit |