Multiple cross-site scripting (XSS) vulnerabilities in (1) deliver.asp and (2) billing.asp in A-CART Pro and A-CART 2.0 allow remote malicious users to inject arbitrary web script or HTML via the user information forms.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
alan ward a-cart 2.0 |