BugTraq
Prestashop Cartium 1.3.3 Multiple Cross Site Scripting (XSS) Mar 02 2011 04:26PM
Antonio S.M (antonio_s_martino yahoo es)
Hello,
In Prestashop Cartium 1.3.3 I have detected multiple Cross Site Scripting (XSS)
vulnerabilities:

File Field
categoty.php id_category
product.php id_product
search.php search_query

Test pattern for vulnerable versions:

"></script>alert(1)</script>

Kind Regards
Antonio San Martino

[ reply ]


 

Privacy Statement
Copyright 2010, SecurityFocus