vendor:
Photo Album
by:
sl4x.xuz
7.5
CVSS
HIGH
SQL Injection, Cross Site Scripting
89, 79
CWE
Product Name: Photo Album
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2008
Availscript Photo Album (pics.php) Multiple Vulnerabilities
Multiple vulnerabilities exist in Availscript Photo Album, including SQL Injection in the 'sid' parameter of 'pics.php' and Cross Site Scripting in the 'sid' parameter of 'pics.php' and the 'a' parameter of 'view.php'.
Mitigation:
N/A