1 results (0.004 seconds)

CVSS: 6.1EPSS: 0%CPEs: 2EXPL: 3

16 Sep 2010 — Cross-site scripting (XSS) vulnerability in UserControls/Popups/frmHelp.aspx in SmarterStats 5.3, 5.3.3819, and possibly other 5.3 versions, allows remote attackers to inject arbitrary web script or HTML via the url parameter. Vulnerabilidad de ejecución de comandos en sitios cruzados (XSS) en UserControls/Popups/frmHelp.aspx en SmarterStats v5.3, v5.3.3819, y posiblemente otras versiones v5.3, permite a atacantes remotos inyectar secuencias de comandos web o HTML a través del parámetro url. • https://www.exploit-db.com/exploits/15185 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •