4.3
CVSSv2

CVE-2005-1004

Published: 02/05/2005 Updated: 11/07/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in usrdetails.php in ProfitCode PayProCart 3.0 allows remote malicious users to inject arbitrary web script or HTML via the sgnuptype parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

profitcode payprocart 3.0

Exploits

source: wwwsecurityfocuscom/bid/13002/info PayProCart is prone to a cross-site scripting vulnerability affecting the 'usrdetailsphp' script An attacker may leverage this issue to have arbitrary script code executed in the browser of an unsuspecting user This may facilitate the theft of cookie-based authentication credentials as well a ...