CVE-2012-1247

Publication date

2012-05-15 20:00:00

Family

jpcert

State

PUBLISHED

Description

Cross-site scripting (XSS) vulnerability in KENT-WEB WEB MART 1.7 and earlier, when Internet Explorer is used, allows remote attackers to inject arbitrary web script or HTML by leveraging support for Cascading Style Sheets (CSS) expressions.