Cross-site scripting (XSS) vulnerability in suche.htm in ShopXS 4.0 allows remote attackers to inject arbitrary web script or HTML via the Suchstring1 (aka search) parameter.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Shopxs |
Suche |
4.0 (including) |
4.0 (including) |
References