Multiple cross-site scripting (XSS) vulnerabilities in admin.cgi in MegaBook 2.0 and 2.1 allow remote malicious users to inject arbitrary web script or HTML via the (1) entryid or (2) password parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
megabook megabook 2.0 |
||
megabook megabook 2.1 |