Multiple cross-site scripting (XSS) vulnerabilities in AlstraSoft AskMe Pro allow remote attackers to inject arbitrary web script or HTML via (1) the cat_id parameter to search.php or the (2) typ parameter to register.php.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Askme_pro | Alstrasoft | * | * |