← Back to CVE List

CVE-2021-39412

Published: 2021-11-05T15:15Z
Last Modified: 2024-11-21T06:19Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Multiple Cross Site Scripting (XSS) vulnerabilities exists in PHPGurukul Shopping v3.1 via the (1) callback parameter in (a) server_side/scripts/id_jsonp.php, (b) server_side/scripts/jsonp.php, and (c) scripts/objects_jsonp.php, the (2) value parameter in examples_support/editable_ajax.php, and the (3) PHP_SELF parameter in captcha/index.php. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt