Cross-site scripting (XSS) vulnerability in APT-webshop-system 4.0 PRO, 3.0 BASIC, and 3.0 LIGHT allows remote attackers to inject arbitrary web script or HTML via the message parameter, probably involving the basket functionality.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Apt-webshop-system | Apt | 3.0 (including) | 3.0 (including) |
Apt-webshop-system | Apt | 4.0 (including) | 4.0 (including) |