osCommerce Contact Us Page FixHits: 7
*****
Fix for osCommerce "Contact_us" Cross Site Scripting Vulnerability.
A new vulnerability was reported in osCommerce, which can be exploited by attackers to conduct Cross Site Scripting attacks. The problem resides in the "contact_us.php" file when handling the "enquiry" parameter, which may be exploited to cause arbitrary scripting code to be executed by the user's browser.
This contribution gives a fix for this vunerability.
Platform(s): n/a
Date: Mar, 05 2005 Author: VN2 Designs, http://www.vn2designs.com {
License}
{
Ratings}Number of Ratings: 0 Votes
Visitor Voting Booth:
{
Others Scripts}
|