Multiple cross-site scripting (XSS) vulnerabilities in Farsi Script (aka FaScript) FaName 1.0 allow remote malicious users to inject arbitrary web script or HTML via the (1) key or (2) desc parameter to index.php, or (3) the name parameter to page.php.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
fascript faname 1.0 |