Vulnerabilities (CVE)

Filtered by vendor Integry Systems Subscribe
Filtered by product Livecart
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2007-6646 1 Integry Systems 1 Livecart 2024-02-04 4.3 MEDIUM N/A
Multiple cross-site scripting (XSS) vulnerabilities in LiveCart 1.0.1, and possibly other versions before 1.1.0, allow remote attackers to inject arbitrary web script or HTML via (1) the return parameter to user/remindPassword, (2) the q parameter to the category script, (3) the return parameter to the order script, or (4) the email parameter to user/remindComplete.