Cross-site scripting (XSS) vulnerability in index.php in toendaCMS before 0.7 Beta allows remote attackers to inject arbitrary web script or HTML via the id parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Toendacms | Toenda_software_development | * | 0.6 (including) |
Toendacms | Toenda_software_development | 0.6_beta_1 (including) | 0.6_beta_1 (including) |
Toendacms | Toenda_software_development | 0.6_beta_2 (including) | 0.6_beta_2 (including) |
Toendacms | Toenda_software_development | 0.6_beta_3 (including) | 0.6_beta_3 (including) |
Toendacms | Toenda_software_development | 0.6_pre-beta (including) | 0.6_pre-beta (including) |