Cross-site scripting (XSS) vulnerability in search.php in Tunez 1.21 and previous versions allows remote malicious users to inject arbitrary web script or HTML via the searchFor parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
tunez tunez 0.4 |
||
tunez tunez 0.5 |
||
tunez tunez 1.20 |
||
tunez tunez 1.21 |
||
tunez tunez 0.1 |
||
tunez tunez 0.9 |
||
tunez tunez 1.0.0 |
||
tunez tunez 0.2 |
||
tunez tunez 0.3 |
||
tunez tunez 1.1 |
||
tunez tunez 1.15 |
||
tunez tunez 0.5.5 |
||
tunez tunez 0.7 |