Description
Cross-site scripting (XSS) vulnerability in search.php in the RMSOFT MiniShop module 1.0 for Xoops allows remote attackers to inject arbitrary web script or HTML via the itemsxpag parameter.
Remediation
References
Related Vulnerabilities
Oracle JRE CVE-2014-2402 Vulnerability (CVE-2014-2402)
WordPress Plugin No Page Comment Multiple Vulnerabilities (1.1)
Magento Improper Authorization Vulnerability (CVE-2021-21026)
WordPress Plugin Zibbra Cross-Site Scripting (1.7.0)
Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2010-1617)