Multiple cross-site scripting (XSS) vulnerabilities in ActiveBuyAndSell 6.2 allow remote attackers to inject arbitrary web script or HTML via the (1) Title parameter to sendpassword.asp or (2) Keyword field in search.asp.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Activebuyandsell | Active_web_softwares | 6.2 (including) | 6.2 (including) |