Cross-site scripting (XSS) vulnerability in view.php in phpRaid 2.9.5 allows remote attackers to inject arbitrary web script or HTML via the (1) URL query string and the (2) Sort parameter.
Link | Tags |
---|---|
http://securityreason.com/securityalert/962 | third party advisory |
http://www.securityfocus.com/bid/18042 | vdb entry exploit |
http://www.securityfocus.com/archive/1/434736/100/0/threaded | mailing list |
https://exchange.xforce.ibmcloud.com/vulnerabilities/26599 | vdb entry |