Cross-site scripting (XSS) vulnerability in LightNEasy.php in LightNEasy 3.2.1 allows remote malicious users to inject arbitrary web script or HTML via the id parameter, which is not properly handled in a forced SQL error message.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
lightneasy lightneasy 3.2.1 |