CVE Database
/

CVE-2005-3736

Back to search

CVE-2005-3736

Published: Nov 22, 2005

Modified: Aug 7, 2024

PUBLISHED

Description

Multiple cross-site scripting (XSS) vulnerabilities in e-Quick Cart allow remote attackers to inject arbitrary web script or HTML via the (1) strgifttoname parameter in shopgift.asp, (2) strfirstname parameter in shopmaillist.asp, (3) strpid parameter in shopprojectlogin.asp, and (4) Custname parameter in shoptellafriend.asp.

VendorProductVersions

n/a

n/a

affected
n/a

References

20996
vdb-entry
x_refsource_OSVDB
1015244
vdb-entry
x_refsource_SECTRACK
20994
vdb-entry
x_refsource_OSVDB
20995
vdb-entry
x_refsource_OSVDB
20993
vdb-entry
x_refsource_OSVDB

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now