Security Advisory

CVE-2019-8290

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2019-10-01 19:53:28
Last updated 2024-08-04 21:17:30
Assigner larry_cashdollar
CVSS score not scored
State PUBLISHED

Description

Vulnerability in Online Store v1.0, The registration form requirements for the member email format can be bypassed by posting directly to sent_register.php allowing special characters to be included and an XSS payload to be injected.