Multiple cross-site scripting (XSS) vulnerabilities in MAXdev MD-Pro 1.0.72 allow remote attackers to inject arbitrary web script or HTML via (1) dl-search.php or (2) wl-search.php.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Md-pro | Maxdev | 1.0.72 (including) | 1.0.72 (including) |