6.8
CVSSv2

CVE-2003-0278

Published: 16/06/2003 Updated: 11/07/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in normal_html.cgi in Happycgi.com Happymall 4.3 and 4.4 allows remote malicious users to insert arbitrary web script via the file parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

happycgi.com happymall 4.3

happycgi.com happymall 4.4

Exploits

source: wwwsecurityfocuscom/bid/7557/info IT has been reported that Happymall E-Commerce is prone to cross-site scripting attacks The problem occurs due to insufficient sanitization of user-supplied URI parameters As a result, it may be possible for an attacker to execute arbitrary script code within the browser of a legitimate user vis ...