CVE-2019-8290

Publication date

2019-10-01 19:53:28

Family

larry_cashdollar

State

PUBLISHED

Description

Vulnerability in Online Store v1.0, The registration form requirements for the member email format can be bypassed by posting directly to sent_register.php allowing special characters to be included and an XSS payload to be injected.