Multiple cross-site scripting (XSS) vulnerabilities in Longino Jacome php-Revista 1.1.2 allow remote attackers to inject arbitrary web script or HTML via the (1) cadena parameter in busqueda.php and the (2) email parameter in lista.php.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Jacome_php-revista | Longino | 1.1.2 (including) | 1.1.2 (including) |