|
Event Calendar PHP 'cal_year' Parameter Cross Site Scripting Vulnerability
An attacker can exploit the issue by enticing an unsuspecting user to visit a specially crafted URL. The following example URI is available: http://www.example.com/demo_eventcalendar.php?cal_id=1&cal_month=2&cal_year=[XSS] |
|
Privacy Statement |