Required CVE Record Information
Description
Cross-site scripting (XSS) vulnerability in admin/admin.php in Sphider 1.3.6 allows remote attackers to inject arbitrary web script or HTML via the category parameter. NOTE: the url parameter vector is already covered by CVE-2014-5082.
References 3 Total
- osvdb.org: 109800 vdb-entry
- osvdb.org: 109799 vdb-entry
- exploit-db.com: 34189 exploit
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 3 Total
- osvdb.org: 109800 vdb-entryx_transferred
- osvdb.org: 109799 vdb-entryx_transferred
- exploit-db.com: 34189 exploitx_transferred