Cross-site scripting (XSS) vulnerability in Open Searchable Image Catalogue (OSIC) 0.7.0.1 and earlier allows remote attackers to inject arbitrary web scripts or HTML via the item_list parameter in search.php.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Open_searchable_image_catalogue | Open_searchable_image_catalogue | * | 0.7.0.0 (including) |