Multiple cross-site scripting (XSS) vulnerabilities in main.php in phpAlbum 0.4.1.16 and previous versions allow remote malicious users to inject arbitrary web script or HTML via the (1) var1 and (2) keyword parameters.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
phpalbum phpalbum |
||
phpalbum phpalbum 0.4.1-14 |
||
phpalbum phpalbum 0.3.1 |
||
phpalbum phpalbum 0.2.1 |
||
phpalbum phpalbum 0.3.0 |
||
phpalbum phpalbum 0.2.4 |
||
phpalbum phpalbum 0.2.3 |
||
phpalbum phpalbum 0.2.2 |
||
phpalbum phpalbum 0.4.1.14 |
||
phpalbum phpalbum 0.4.1.15 |
||
phpalbum phpalbum 0.3.2 |