|
Description
|
|
Multiple vulnerabilities were identified in PHPWebSite, which could be exploited by malicious users to conduct SQL injection, cross site scripting and directory traversal attacks. These flaws are due to an input validation error in the search module that does not properly filter a specially crafted "mod" parameter, which could be exploited by remote attackers to conduct SQL injection, cross site scripting and directory traversal attacks.
|