Cross-site scripting (XSS) vulnerability in index.php in ModernBill 4.4 and previous versions allows remote malicious users to inject arbitrary web script or HTML via a Javascript event in the new_language parameter in a login action.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
modernbill modernbill 2.02s |
||
modernbill modernbill 3.0 |
||
modernbill modernbill 4.1.2 |
||
modernbill modernbill 4.1.3 |
||
modernbill modernbill 3.1.0 |
||
modernbill modernbill 4.0.1 |
||
modernbill modernbill 4.2.1 |
||
modernbill modernbill 4.3.0 |
||
modernbill modernbill 2.01 |
||
modernbill modernbill 3.1.3 |
||
modernbill modernbill 4.1.1 |
||
modernbill modernbill |
||
modernbill modernbill 4.0.2 |
||
modernbill modernbill 4.3.2 |