Cross-site scripting (XSS) vulnerability in search.asp in ACS Blog 0.8 through 1.1b allows remote attackers to execute arbitrary web script or HTML via the search parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Acs_blog | Asp_press | 0.8 (including) | 0.8 (including) |
Acs_blog | Asp_press | 0.9 (including) | 0.9 (including) |
Acs_blog | Asp_press | 1.0 (including) | 1.0 (including) |
Acs_blog | Asp_press | 1.1b (including) | 1.1b (including) |