Cross-site scripting (XSS) vulnerability in JMB Software AutoRank PHP 3.02 and previous versions, and AutoRank Pro 5.01 and previous versions, allows remote malicious users to inject arbitrary web script or HTML via the (1) Keyword parameter in search.php and the (2) Username parameter in main.cgi.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
jmb software autorank |