Cross-site scripting (XSS) vulnerability in htsearch.cgi in htdig (ht://Dig) 3.1.5, 3.1.6, and 3.2 allows remote malicious users to inject arbitrary web script or HTML via the words parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
htdig htdig 3.1.5 |
||
htdig htdig 3.1.6 |
||
htdig htdig 3.2.0 |
||
htdig htdig 3.2.0b3 |