CVE Published: 01/10/2019 |
CVE Updated: 04/08/2024 |
CVE Year: 2019 Source: larry_cashdollar |
Vendor: abcprintf |
Product: Online Store Status : PUBLISHED
CVE-2019-8290 Description
Vulnerability in Online Store v1.0, The registration form requirements for the member email format can be bypassed by posting directly to sent_register.php allowing special characters to be included and an XSS payload to be injected.