Multiple cross-site scripting (XSS) vulnerabilities in RadScripts RadBids Gold 2 allow remote attackers to inject arbitrary web script or HTML via (1) the farea parameter to faq.php or the (2) cat, (3) order, or (4) area parameters to index.php.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Radbids | Radscripts | 2 (including) | 2 (including) |