CVE Database
/

CVE-2004-2109

Back to search

CVE-2004-2109

Published: May 27, 2005

Modified: Aug 8, 2024

PUBLISHED

Description

Multiple cross-site scripting (XSS) vulnerabilities in (1) imagezoom.asp or (2) recommend.asp in Q-Shop allow remote attackers to execute arbitrary script and steal the user session ID via Javascript in a URL.

VendorProductVersions

n/a

n/a

affected
n/a

References

9480
vdb-entry
x_refsource_BID
3697
vdb-entry
x_refsource_OSVDB
10704
third-party-advisory
x_refsource_SECUNIA
3696
vdb-entry
x_refsource_OSVDB
qshop-url-xss(14923)
vdb-entry
x_refsource_XF

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now