Multiple cross-site scripting (XSS) vulnerabilities in EncapsGallery 1.11.2 allow remote attackers to inject arbitrary web script or HTML via the file parameter to (1) watermark.php and (2) catalog_watermark.php in core/. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published: 2008-03-12T17:00:00
Updated: 2024-08-07T08:17:34.530Z
Reserved: 2008-03-12T00:00:00
Link: CVE-2008-1296

No data.

Status : Modified
Published: 2008-03-12T17:44:00.000
Modified: 2024-11-21T00:44:11.950
Link: CVE-2008-1296

No data.