Cross-site scripting (XSS) vulnerability in index.php in Pinnacle Cart 3.33 and earlier allows remote attackers to inject arbitrary web script or HTML via the setbackurl parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Pinnacle_cart | Desert_dog_software | 3.33 (including) | 3.33 (including) |