Cross-site scripting (XSS) vulnerability in user.cgi in Gossamer Threads Links SQL 2.x and 3.0 allows remote malicious users to inject arbitrary web script or HTML via the url parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
gossamer threads gossamer threads links 2.0 |
||
gossamer threads gossamer threads links 2.2.0 |
||
gossamer threads gossamer threads links-sql 3.0 |