There is a Cross Site Scripting (XSS) vulnerability in the "action" parameter of index.php in PHPJabbers Make an Offer Widget v1.0.
References
| Link | Resource |
|---|---|
| https://www.phpjabbers.com/make-an-offer-widget | Product |
| https://medium.com/@mfortinsec/multiple-vulnerabilities-in-phpjabbers-part-3-40fc3565982f | Exploit Third Party Advisory |
Configurations
Information
Published : 2023-08-28 13:15
Updated : 2023-08-29 16:21
NVD link : CVE-2023-40752
Mitre link : CVE-2023-40752
JSON object : View
Products Affected
phpjabbers
- make_an_offer_widget
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
