Security Advisory

CVE-2017-7992

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2017-04-21 14:00:00
Last updated 2024-09-16 23:30:58
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Heartland Payment Systems Payment Gateway PHP SDK hps/heartland-php v2.8.17 is vulnerable to a reflected XSS in examples/consumer-authentication/cruise.php via the URI, as demonstrated by the cavv parameter.