Vulnerabilities > Website Seller Script Project > Website Seller Script > 2.0.3

DATE CVE VULNERABILITY TITLE RISK
2018-05-26 CVE-2018-11501 Cross-site Scripting vulnerability in Website Seller Script Project Website Seller Script 2.0.3
PHP Scripts Mall Website Seller Script 2.0.3 has CSRF via user_submit.php?upd=2, with resultant XSS.
network
low complexity
website-seller-script-project CWE-79
8.8
2018-04-12 CVE-2018-6879 Improper Input Validation vulnerability in Website Seller Script Project Website Seller Script 2.0.3
PHP Scripts Mall Website Seller Script 2.0.3 uses the client side to enforce validation of an e-mail address, which allows remote attackers to modify a registered e-mail address by removing the validation code.
network
low complexity
website-seller-script-project CWE-20
8.8
2018-04-12 CVE-2018-6870 Cross-site Scripting vulnerability in Website Seller Script Project Website Seller Script 2.0.3
Reflected XSS exists in PHP Scripts Mall Website Seller Script 2.0.3 via the Listings Search feature.
network
low complexity
website-seller-script-project CWE-79
6.1