Multiple cross-site scripting (XSS) vulnerabilities in Mambo Site Server 4.0.11 allow remote attackers to execute arbitrary script on other clients via (1) search.php and (2) the Your name field during account registration.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Mambo_site_server | Mambo | 4.0.11 (including) | 4.0.11 (including) |