PHP Scripts Mall Personal Video Collection Script 4.0.4 has Stored XSS via the "Update profile" feature.
References
Link | Resource |
---|---|
https://hackingvila.wordpress.com/2019/03/03/php-script-mall-personal-video-collection-script-has-stored-xss-in-edit-my-profile/ | Exploit Third Party Advisory |
https://hackingvila.wordpress.com/2019/03/03/php-script-mall-personal-video-collection-script-has-stored-xss-in-edit-my-profile/ | Exploit Third Party Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 04:51
Type | Values Removed | Values Added |
---|---|---|
References | () https://hackingvila.wordpress.com/2019/03/03/php-script-mall-personal-video-collection-script-has-stored-xss-in-edit-my-profile/ - Exploit, Third Party Advisory |
Information
Published : 2019-03-06 22:29
Updated : 2024-11-21 04:51
NVD link : CVE-2019-9606
Mitre link : CVE-2019-9606
CVE.ORG link : CVE-2019-9606
JSON object : View
Products Affected
personal_video_collection_script_project
- personal_video_collection_script
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')