Total vulnerabilities in the database
Cross-site scripting (XSS) vulnerability in search.php3 (aka search.php) in W-Agora 4.2.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the bn parameter.
Software | From | Fixed in |
---|---|---|
w-agora / w-agora | 4.0.0 | 4.0.0.x |
w-agora / w-agora | 4.1.5 | 4.1.5.x |
w-agora / w-agora | 4.2.0 | 4.2.0.x |
w-agora / w-agora | 4.0.2 | 4.0.2.x |
w-agora / w-agora | 4.1.0 | 4.1.0.x |
w-agora / w-agora | 4.0.2a | 4.0.2a.x |
w-agora / w-agora | 4.1.7 | 4.1.7.x |
w-agora / w-agora | 4.1.6 | 4.1.6.x |
w-agora / w-agora | 4.0.1 | 4.0.1.x |
w-agora / w-agora | 4.1.3 | 4.1.3.x |
w-agora / w-agora | 4.1.1 | 4.1.1.x |
w-agora / w-agora | 4.1.2 | 4.1.2.x |
w-agora / w-agora | - | 4.2.1.x |
w-agora / w-agora | 4.1.6a | 4.1.6a.x |
w-agora / w-agora | 4.1.4 | 4.1.4.x |
w-agora / w-agora | 4.0.3 | 4.0.3.x |