Multiple cross-site scripting (XSS) vulnerabilities in result.asp in Enthrallweb eHomes allow remote attackers to inject arbitrary web script or HTML via the (1) city or (2) State parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Ehomes | Enthrallweb | * | * |