Cross-site scripting vulnerability in catgy.cgi for Aktivate 1.03 allows remote malicious users to execute arbitrary Javascript via the desc parameter.
source: wwwsecurityfocuscom/bid/3714/info
Aktivate is a shopping cart system which is geared towards Unix and Linux users, uses MySQL as a backend, and is written in Perl
Aktivate is prone to cross-site scripting attacks It is possible to construct a link containing arbitrary script code to a website running Aktivate When a user brows ...