Active Auction 'search' Parameter SQL Injection and Cross Site Scripting Vulnerabilities

Bugtraq ID: 33306
Class: Input Validation Error
CVE:
Remote: Yes
Local: No
Published: Jan 15 2009 12:00AM
Updated: Jan 19 2009 05:12PM
Credit: Pouya_Server
Vulnerable: Active Web Softwares Active Auction Pro 0
Active Web Softwares Active Auction House
Not Vulnerable:


 

Privacy Statement
Copyright 2010, SecurityFocus