Topic: Multiple vulnerabilities
I notified developper.
Phpclassifieds 7.5 is vulnerable xss attack on member_login.php (username and password), search.php (xajax,searchword,do_search,catid_search,reset,catid,order, way) user_info.php (id)
Cross Site Scripting in URI in choose_cat.php
Exemple : http://target/choose_cat.php/%3E%20%3E%20ScRiPt%3EALERT#9184276303360409151
Did you have resolved this probleme for next release ?
I am waiting a reply.
Cordially