Cross-site scripting (XSS) vulnerability in view.php in phpRaid 2.9.5 allows remote attackers to inject arbitrary web script or HTML via the (1) URL query string and the (2) Sort parameter.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Phpraid |
Spiffyjr |
2.9.5 |
2.9.5 |
References