Cross-site scripting (XSS) vulnerability in aeDating 4.1 allows remote attackers to inject arbitrary web script or HTML via the (1) Sex parameter in index.php, (2) ProfileType parameter in join_form.php, and (3) Email parameter in forgot.php.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Aedating | Aewebworks | 4.1 (including) | 4.1 (including) |