Cross-site scripting (XSS) vulnerability in the search functionality in Fixit iDMS Pro Image Gallery allows remote attackers to inject arbitrary web script or HTML via a search field (txtsearchtext parameter).
Link | Tags |
---|---|
http://www.securityfocus.com/archive/1/452567/100/0/threaded | mailing list |
http://securityreason.com/securityalert/1941 | third party advisory |
http://www.aria-security.com/forum/showthread.php?t=39 | exploit |
https://exchange.xforce.ibmcloud.com/vulnerabilities/30514 | vdb entry |
http://www.securityfocus.com/bid/21282 | exploit vdb entry vendor advisory |
http://securitytracker.com/id?1017281 | vdb entry vendor advisory |