vendor:
by:
Özkan Mustafa Akkus (AkkuS)
N/A
CVSS
N/A
SQL Injection / Cross-Site Scripting
CWE
Product Name:
Affected Version From: 1
Affected Version To: 1
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Kali linux
2018
EasyService Billing 1.0 – ‘template_().php’ SQL Injection / Cross-Site Scripting
all of the print and preview pages have the same vulnerabilities. (template_SBilling.php, template_Receipt.php, template_SBillingPerforma.php, template_SBillingQuotation.php) All of them use the same parameters. An attacker can use any of these.