Cross-site scripting (XSS) vulnerability in downloadform.php in E-Store Kit-2 PayPal Edition allows remote attackers to inject arbitrary web script or HTML via the txn_id parameter.
References
Link | Resource |
---|---|
http://marc.info/?l=bugtraq&m=111186424600509&w=2 | |
http://www.securityfocus.com/bid/12909 | Exploit Vendor Advisory |
Configurations
History
No history.
Information
Published : 2005-03-26 05:00
Updated : 2024-02-04 16:52
NVD link : CVE-2005-0898
Mitre link : CVE-2005-0898
CVE.ORG link : CVE-2005-0898
JSON object : View
Products Affected
magicscripts
- e-store_kit-2
CWE