CVE-2006-4894
Published Sep 19, 2006Cross-site scripting (XSS) vulnerability in forms/lostpassword.php in iDevSpot NixieAffiliate 1.9 and earlier allows remote attackers to inject arbitrary web script or HTML via th…
Vendor/product archive
2 CVEs tagged to idevspot / nixieaffiliate — 0 Critical, 1 High, 1 Medium, 0 Low, 0 Unrated.
Cross-site scripting (XSS) vulnerability in forms/lostpassword.php in iDevSpot NixieAffiliate 1.9 and earlier allows remote attackers to inject arbitrary web script or HTML via th…
IDevSpot NexieAffiliate 1.9 and earlier allows remote attackers to delete arbitrary affiliates via a modified id parameter to delete.php.