Cross-site scripting (XSS) vulnerability in EC-CUBE prior to 1.0.1a-beta allows remote malicious users to inject arbitrary web script or HTML via unknown attack vectors.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
ec-cube ec-cube 1.0 |