Security Advisory
CVE-2021-47911
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Affiliate Pro 1.7 contains multiple reflected cross-site scripting vulnerabilities in the index modules input fields. Attackers can inject malicious scripts through fullname, username, and email parameters to execute client-side attacks and manipulate browser requests.