Multiple cross-site scripting (XSS) vulnerabilities in Zen Cart Web Shopping Cart before 1.3.7 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Web_shopping_cart | Zen_cart | 1.1.2d (including) | 1.1.2d (including) |
Web_shopping_cart | Zen_cart | 1.2.6d (including) | 1.2.6d (including) |
Web_shopping_cart | Zen_cart | 1.2.7 (including) | 1.2.7 (including) |
Web_shopping_cart | Zen_cart | 1.3 (including) | 1.3 (including) |
Web_shopping_cart | Zen_cart | 1.3.2 (including) | 1.3.2 (including) |
Web_shopping_cart | Zen_cart | 1.3.5 (including) | 1.3.5 (including) |