Cross-site scripting (XSS) vulnerability in index.php in Musicbox 2.3.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the term parameter in a search action.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Musicbox | Musicbox | * | 2.3.3 (including) |