Multiple cross-site scripting (XSS) vulnerabilities in VBzoom allow remote malicious users to inject arbitrary web script and HTML via the (1) UserName parameter to profile.php or (2) UserID parameter to login.php.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
vbzoom vbzoom |