Heap
16-06-09, 02:42
Cross-site scripting (XSS) vulnerability in search.asp in PDshopPro, when downloaded before 20070308, allows remote attackers to inject arbitrary web script or HTML via the search parameter.
More... (http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-2032)
More... (http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-2032)