TUCoPS :: HP Unsorted B :: bt-21929.htm

Bractus SunTrack Multiple XSS
Bractus SunTrack Multiple XSS
Bractus SunTrack Multiple XSS



Vendor: Bractus (http://bract.us) 
Product: SunTrack (http://bract.us/demo/login.jsp) 

Multiple stored XSS vulnerabilities exist in the Bractus SunTrack
courier software suite.

Affected scripts:
newprofile.html (title parameter)
signup/signup.html (firstname, lastname, company parameter)
contact.html (firstname, lastname, address[0].street1 parameter)

-- 

BugsNotHugs
Shared Vulnerability Disclosure Account

TUCoPS is optimized to look best in Firefox® on a widescreen monitor (1440x900 or better).
Site design & layout copyright © 1986-2024 AOH