Cross-site scripting (XSS) vulnerability in book.cfm in Magic Book Personal and Professional 2.0 allows remote malicious users to inject arbitrary web script or HTML via the StartRow parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
cfmagic magic book personal 2.0 |
||
cfmagic magic book professional 2.0 |