Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

OSCommerce Checkout_Confirmation.PHP Comment HTML Injection Vulnerability

Comment data is not sufficiently sanitized of HTML and script code. This may allow remote attackers to inject hostile HTML and script code into the e-commerce system, which could potentially be rendered by other users of the software.







 

Privacy Statement
Copyright 2009, SecurityFocus