CVE
- Id
- 76305
- CVE No.
- CVE-2014-9004
- Status
- Candidate
- Description
- Cross-site scripting (XSS) vulnerability in vldPersonals before 2.7.1 allows remote attackers to inject arbitrary web script or HTML via the id parameter in a member_profile action to index.php.
- Phase
- Assigned (20141119)
- Votes
- None (candidate not yet proposed)
- Comments