Cross-site scripting (XSS) vulnerability in PHPPageProtect 1.0.0a allows remote attackers to inject arbitrary web script or HTML via the username parameter to (1) admin.php or (2) login.php.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Phppageprotect | Php.warpedweb.net | 1.0.0a (including) | 1.0.0a (including) |