Multiple cross-site scripting (XSS) vulnerabilities in Timothy Claason KnowledgeBank 1.01 allow remote attackers to inject arbitrary web script or HTML via unspecified parameters to (1) index.php, (2) addknowledge.php, and (3) addscreenshot.php.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Knowledgebank | Timothy_claason | 1.01 (including) | 1.01 (including) |