osCommerce2 before v2.3.4.1 was discovered to contain a cross-site scripting (XSS) vulnerability via the function tep_db_error().
2022-08-18T20:15:11.527
2024-11-21T07:10:54.350
Modified
CVSSv3.1: 6.1 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | oscommerce | oscommerce | < 2.3.4.1 | Yes |