Arbitrary Code Injection through User Registration in PBLang 4.65 and Earlier Versions

Arbitrary Code Injection through User Registration in PBLang 4.65 and Earlier Versions

CVE-2005-2894 · MEDIUM Severity

AV:N/AC:M/AU:N/C:N/I:P/A:N

Cross-site scripting (XSS) vulnerability in the user registration in PBLang 4.65, and possibly earlier versions, allows remote attackers to inject arbitrary web script or PHP via the location field.

Learn more about our Web App Pen Testing.